PT0-002 · Question #404
Which of the following describes a globally accessible knowledge base of adversary tactics and techniques based on real-world observations?
The correct answer is B. MITRE ATT&CK. MITRE ATT&CK is a globally accessible knowledge base that describes adversary tactics and techniques observed in real-world cyberattacks, providing a comprehensive framework for understanding and combating cyber threats. It categorizes specific actions attackers take during the…
Question
Which of the following describes a globally accessible knowledge base of adversary tactics and techniques based on real-world observations?
Options
- AOWASP Top 10
- BMITRE ATT&CK
- CCyber Kill Chain
- DWell-Architected Framework
How the community answered
(45 responses)- A2% (1)
- B91% (41)
- C2% (1)
- D4% (2)
Why each option
MITRE ATT&CK is a globally accessible knowledge base that describes adversary tactics and techniques observed in real-world cyberattacks, providing a comprehensive framework for understanding and combating cyber threats. It categorizes specific actions attackers take during the different phases of an attack lifecycle.
The OWASP Top 10 is a list of the ten most critical web application security risks, not a comprehensive knowledge base of adversary tactics and techniques across all attack surfaces.
The MITRE ATT&CK framework is precisely what is described: a globally accessible knowledge base of adversary tactics and techniques based on real-world observations. It provides a common language and framework for describing attacker behaviors, enabling organizations to improve their threat detection, analysis, and response capabilities.
The Cyber Kill Chain is a model that outlines the typical stages of a cyberattack, from reconnaissance to exfiltration, but it is not a detailed knowledge base of specific adversary tactics and techniques.
A Well-Architected Framework (e.g., AWS, Azure) provides guidance on designing and operating secure, high-performing, resilient, and efficient cloud infrastructure, not a knowledge base of adversary TTPs.
Concept tested: Threat intelligence frameworks - MITRE ATT&CK
Source: https://attack.mitre.org/
Topics
Community Discussion
No community discussion yet for this question.