Published July 11, 2019 | Version v1
Journal article Open

Monitoring - Detecting Attacks with MITRE ATT&CK

Authors/Creators

  • 1. scip AG

Contributors

Editor:

  • 1. scip AG

Description

Understanding the techniques used in attacks helps in detecting them. MITRE ATT&CK Enterprise Matrix includes actual attack statistics and techniques. Running it requires configuration of additional Windows audit settings. Correlations between events can be used to identify attacks.

Notes

This paper was written in 2019 as part of a research project at scip AG, Switzerland. It was initially published online at https://www.scip.ch/en/?labs.20190711 and is available in English and German. Providing our clients with innovative research for the information technology of the future is an essential part of our company culture.

Files

Monitoring - Detecting Attacks with MITRE ATT&CK.pdf

Files (217.4 kB)