PacketNut; Confessions of an Enterprise Information Security Architect

A blog for Security Architects, CISOs and anyone else responsible for protecting their organisation's information assets

Useful Info

  • Home
  • Companies that interest me

Tuesday, 13 August 2019

MITRE ATT&CK

High level overview of the MITRE ATT&CK model by Exabeam.
https://www.exabeam.com/information-security/what-is-mitre-attck-an-explainer/

Posted by Tony Brown at 23:35 No comments:
Email ThisBlogThis!Share to XShare to FacebookShare to Pinterest
Newer Posts Older Posts Home
Subscribe to: Comments (Atom)

Security News

  • IBTimes.co.uk : Technology
    Half-Life: Xen Reportedly Tipped as a Steam Machine Launch Title, According to Leaks
    47 minutes ago
  • The Hacker News
    Google to Shut Down Dark Web Monitoring Tool in February 2026
    2 hours ago
  • The Register - Security
    PwC on using AI to turn cybersecurity risk into competitive advantage
    2 hours ago
  • Techdirt.
    ‘Let It Die: Inferno’ Is A Very Interesting Trial Balloon For AI Use In Video Games
    4 hours ago
  • Latest topics for ZDNet in Security
    BusenLabs Boron vs. Bohdi Linux: Which lightweight distro is right for you?
    6 hours ago
  • Security Boulevard
    AI-powered threat detection for MCP data manipulation attempts
    7 hours ago
  • Latest news and stories from BleepingComputer.com
    PornHub extorted after hackers steal Premium member activity data
    10 hours ago
  • Cisco Blog
    ZTNA and Remote Access: A Security Model for the Future of Work
    11 hours ago
  • SecurityWeek RSS Feed
    Militant Groups Are Experimenting With AI, and the Risks Are Expected to Grow
    14 hours ago
  • SearchSecurity: Security Wire Daily News
    5 network security predictions for 2026
    17 hours ago
  • Cybercrime Magazine
    Mastercard’s Deputy Chief Security Officer Alissa (Dr Jay) Abdullah, PhD on AI & Cybersecurity
    18 hours ago
  • IT SECURITY GURU
    Next Gen Awareness Training: KnowBe4 Unveils Custom Deepfake Training
    18 hours ago
  • Schneier on Security
    Against the Federal Moratorium on State-Level Regulation of AI
    20 hours ago
  • ComputerWeekly: IT security
    The three cyber trends that will define 2026
    21 hours ago
  • Graham Cluley
    Man jailed for teaching criminals how to use malware
    21 hours ago
  • Daniel Miessler
    A Personal AI Maturity Model
    1 day ago
  • Risky Business
    Risky Bulletin: African freelancers behind anti-US and anti-French disinfo campaigns
    1 day ago
  • Cybercrime | The Guardian
    ‘The frontline is everywhere’: new MI6 head to warn of growing Russian threat
    1 day ago
  • Troy Hunt
    Processing 630 Million More Pwned Passwords, Courtesy of the FBI
    3 days ago
  • Google Online Security Blog
    HTTPS certificate industry phasing out less secure domain validation methods
    5 days ago
  • EFF Press Releases
    EFF Launches Age Verification Hub as Resource Against Misguided Laws
    5 days ago
  • Krebs on Security
    Microsoft Patch Tuesday, December 2025 Edition
    6 days ago
  • NCSC Site
    Provisioning and managing certificates in the Web PKI
    1 week ago
  • Cybersecurity Zen
    How to Choose a Philly Trucking Job: Bridges & Tolls, Tight Docks, Warehouse Hotspots
    2 months ago
  • Hacker Combat - Cyber Security and Hacking News | HackerCombat
    Snowflake Data Breach: What Happened and How to Prevent It
    4 months ago
  • Cybersecurity Insiders
    Catfishing via ChatGPT: A Deep Cybersecurity Concern
    6 months ago
  • Security Intelligence
    How to craft a comprehensive data cleanliness policy
    11 months ago
  • Cybersecurity
    We're buying the recent dips on 2 stocks in the most oversold market in over a year
    11 months ago
  • Motherboard US - Hacking US
    The Teenager Who Lived a Secret Double Life as a Millionaire Crypto Bandit
    1 year ago
  • Latest Security Articles from ComputerworldUK
    Kill meetings (before meetings kill your company)
    1 year ago
  • Errata Security
    C can be memory safe, part 2
    1 year ago
  • Dark Reading:
    The Role of the CISO in Digital Transformation
    2 years ago
  • Light Reading:
    Energy- and Space-Efficient Security in Telco Networks
    2 years ago
  • News – SC Media
    New AI phishing tool FraudGPT tied to same group behind WormGPT
    2 years ago
  • CSO Online
    Most popular generative AI projects on GitHub are the least secure
    2 years ago
  • Softpedia News / Security
    Google Expands End-to-End Encryption for Gmail on the Web
    2 years ago
  • Threatpost | The first stop for security news
    Student Loan Breach Exposes 2.5M Records
    3 years ago
  • DDoS Attacks
    Link11 Discovers Record Number of DDoS Attacks in First Half of 2021
    4 years ago
  • Feedspot Blog
    Top 5 Ayurveda Forums, Discussions, Message Boards To Follow in 2021
    4 years ago
  • Computer Business Review
    Network transformation: The foundation for digital business
    4 years ago
  • RSA Conference Blog
    A WORD OF CAUTION: AVOID SCAMMERS CLAIMING TO HAVE THE RSAC ATTENDEE LIST
    4 years ago
  • Bad Packets Report
    Over 3,000 F5 BIG-IP endpoints vulnerable to CVE-2020-5902
    5 years ago
  • Ars Technica » Risk Assessment
    What the newly released Checkra1n jailbreak means for iDevice security
    6 years ago
  • US-CERT Tips
    Privacy and Mobile Device Apps
    6 years ago
  • Infosecurity Europe Blog
    Infosecurity Magazine takes over Infosecurity North America 2018
    6 years ago
  • CRN
    WATCH: Digital Guardian Exec On How Its Move To The Cloud Benefits Partners
    7 years ago
  • SecurityRoundTable.org
    Why A ‘Cloud Architect’ Should Be on Your Hiring Agenda
    7 years ago
  • WIRED » Threat Level
    Feds Charge NSA Contractor Accused of Exposing Russian Hacking
    8 years ago
  • Security | The Silicon Review
    Is it true that internet has penetrated only to handful of the Indian population?!
    8 years ago
  • Latest articles from SC Magazine UK
    400% increase in POS malware variants across US Thanksgiving weekend
    9 years ago
  • Forbes - Security
    Slice Offers On-Demand Insurance To Cover Home Sharing Hell
    9 years ago
  • Blog - devsecops
    Securing the Continuous Integration Continuous Deployment (CICD) Pipeline
    9 years ago
  • AlienVault Blogs
Show 10 Show All

Vendors

  • AWS Security Blog
    What AWS Security learned from responding to recent npm supply chain threat campaigns
    10 hours ago
  • Malwarebytes Unpacked
    Pig butchering is the next “humanitarian global crisis” (Lock and Code S06E25)
    16 hours ago
  • Tenable Blog
    Security for AI: How Shadow AI, Platform Risks, and Data Leakage Leave Your Organization Exposed
    18 hours ago
  • CloudFlare
    The 2025 Cloudflare Radar Year in Review: The rise of AI, post-quantum, and record-breaking DDoS attacks
    18 hours ago
  • Rapid7 Blog
    SantaStealer is Coming to Town: A New, Ambitious Infostealer Advertised on Underground Forums
    22 hours ago
  • Recorded Future
    What’s Next for Enterprise Threat Intelligence in 2026
    1 day ago
  • Centrify Cloud Service Status - Incident History
    Secret Server Cloud: US - delays with Remote Password Changing (RPC) tasks
    1 day ago
  • Cisco Blog » Security
    A Newbie’s Perspective: From Curiosity to Confidence, My SOC Story
    3 days ago
  • We Live Security » Languages » English
    Black Hat Europe 2025: Was that device designed to be on the internet at all?
    3 days ago
  • SentinelOne
    The Good, the Bad and the Ugly in Cybersecurity – Week 50
    3 days ago
  • The Akamai Blog
    CVE-2025-66516: Detecting and Defending Against Apache Tika XXE Attack
    4 days ago
  • Palo Alto Networks Blog
    Redefining Workspace: Prisma Browser Secures Leadership in Frost Radar
    4 days ago
  • Imperva Cyber Security Blog
    Chain Reaction: Attack Campaign Activity in the Aftermath of React Server Components Vulnerability
    4 days ago
  • CyberArk
    The future of privilege: Dynamic identity security in real time
    4 days ago
  • Heimdal Security Blog
    How to Avoid Holiday Shopping Scams (From a Former Cyber Detective)
    4 days ago
  • Varonis Blog
    Spiderman Phishing Kit Mimics Top European Banks With A Few Clicks
    6 days ago
  • ThreatConnect | Enterprise Threat Intelligence Platform
    Part 2: Putting Cyber Risk Quantification Into Action: Moving Beyond Theory
    6 days ago
  • Packet Pushers - Briefings In Brief
    Tech Bytes: How to Get DPUs from Niche to Transformative (Sponsored)
    1 week ago
  • TaoSecurity
    We have achieved FreeBSD 15.0-REL with KDE Plasma
    2 weeks ago
  • Check Point Blog
    AI Has Become the New Enterprise Perimeter — and Gemini 3 Pro Just Proved It
    2 weeks ago
  • Arbor Networks Threat Intelligence
    Who Turns to Stone Now?
    4 weeks ago
  • ClearSky Cybersecurity
    Houthi Influence Campaign
    8 months ago
  • Darktrace Blog
    Darktrace Recognized as the Only Visionary in the 2025 Gartner® Magic Quadrant™ for CPS Protection Platforms
    8 months ago
  • Darktrace Blog
    Darktrace Recognized as the Only Visionary in the 2025 Gartner® Magic Quadrant™ for CPS Protection Platforms
    8 months ago
  • Fooling the Interpreter
    Bypassing Whitelists With XSS Payloads in Attributes
    1 year ago
  • Liquidmatrix Security Digest
    Liquidmatrix Security Digest Podcast – Episode 7E
    1 year ago
  • Postmodern Security
    Let’s Stop the Security Shaming
    1 year ago
  • Errata Security
    C can be memory safe, part 2
    1 year ago
  • Naked Security
    Update on Naked Security
    2 years ago
  • Anomali Blog
    Anomali Cyber Watch: Cadet Blizzard - New GRU APT, ChamelDoH Hard-to-Detect Linux RAT, Stealthy DoubleFinger Targets Cryptocurrency
    2 years ago
  • Securosis Highlights
    The THIRTEENTH Annual Disaster Recovery Breakfast: Changing of the Guard
    2 years ago
  • blog.trendmicro.co.uk
    Delivering visibility, control and simplified security to Bathgate Group
    3 years ago
  • TrendLabs Security Intelligence Blog
    Finest Free Torrenting VPNs
    4 years ago
  • AlienVault Blogs
    This feed has moved and will be deleted soon. Please update your subscription now.
    4 years ago
  • Carbon Black
    VMware Carbon Black Delivers High-Fidelity Insight at Every Step of MITRE Engenuity ATT&CK® Evaluation
    4 years ago
  • CipherCloud
    CipherCloud and Lookout Blaze a New Path Together – Redefining Security from Endpoint to Cloud
    4 years ago
  • Inside The Threat Blog by Lancope
    This feed has moved and will be deleted soon. Please update your subscription now.
    5 years ago
  • Skybox Security Blog – Cybersecurity from The Skybox View
    Salt Vulnerabilities Exploited with Targeted Cryptomining Attack on DigiCert
    5 years ago
  • Zscaler Research
    Frenchy – Shellcode in the Wild
    5 years ago
  • Cisco Blog » Threat Research
    C2 With It All: From Ransomware To Carding
    6 years ago
  • Preempt Blog
    Why Insider Threat Denial is Everyone’s Problem
    6 years ago
  • Network Security Blog
    Lucky Break
    7 years ago
  • Threat Research
    BIOS Boots What? Finding Evil in Boot Code at Scale!
    7 years ago
  • Threat Intelligence
    Lojack Becomes a Double-Agent
    7 years ago
  • Fortinet Blog
    Securing the Network: What Three Key Verticals Require
    7 years ago
  • Cyphort
    Equifax Breach: The News We All Dreaded to Hear.
    8 years ago
  • Speaking of Security - The RSA Blog and Podcast
    A Security Decision – Build or Buy
    8 years ago
  • Metasploit
    Metasploit Wrapup
    8 years ago
  • Threat Geek
    Reducing Detection from Months to Minutes: Detecting Credentials in the Clear
    8 years ago
  • Lockheed Martin Cybersecurity Blog
    How Threat Intelligence Can Increase an Organization’s Cybersecurity Maturity
    9 years ago
  • iSIGHT Partners
    ThreatScape Media Highlights Update – Week Of June 8th
    9 years ago
  • LogRhythm: The Dialog - The Security Intelligence Company
    Getting Started with Threat Intelligence
    10 years ago
  • IBM Internet Security Systems Internet Threat Information
    Multiple Adobe Flash Player code execution vulnerabilities
    10 years ago
  • Cylance Blog
  • Farsight Security Blog
  • Our Blog | Core Security
  • Comments on: The Top 10 AlgoSec Blog Posts From 2018
  • Trustwave Newsroom
Show 10 Show All

Blog Archive

  • ►  2020 (2)
    • ►  May (2)
  • ▼  2019 (35)
    • ►  December (2)
    • ►  November (2)
    • ►  October (6)
    • ►  September (5)
    • ▼  August (1)
      • MITRE ATT&CK
    • ►  June (1)
    • ►  February (4)
    • ►  January (14)
  • ►  2018 (4)
    • ►  December (2)
    • ►  September (1)
    • ►  April (1)
  • ►  2017 (6)
    • ►  August (5)
    • ►  July (1)
  • ►  2016 (1)
    • ►  January (1)
  • ►  2015 (4)
    • ►  September (4)
  • ►  2013 (3)
    • ►  April (1)
    • ►  March (1)
    • ►  February (1)

About Me

Tony Brown
Enterprise Security Solutions Architect at global service provider. CCIE #8767. CISSP. Chartered Engineer. MSc. in Information Security. CCDE 2011:6 Chartered IT Professional. Member of the Institute of Information Security Professionals. Blah blah blah
View my complete profile
Awesome Inc. theme. Powered by Blogger.