cti
cti copied to clipboard
Cyber Threat Intelligence Repository expressed in STIX 2.0
I am looking for the proper way to return the Tactics of the **PRE Platform** within the **Enterprise** domain. https://attack.mitre.org/matrices/enterprise/pre/  In this case I need to...
Hi, Why there are so few records in the intrusion-set folder? https://github.com/mitre/cti/tree/master/ics-attack/intrusion-set It causes a partial creation db of groups in ics.
As a user of the ATT&CK dataset, I want to be able to populate my tools and UIs with information about the ATT&CK data model. Currently, there's a good deal...
Hello CTI team, I was looking at enhancing a few functions in a library I created named attackcti. I wanted to enable a new parameter/argument that would allow me to...
I'd love to be able to see the version ATT&CK inside an object. Using the STIX object alone, it is not currently possible to do this. For example; how do...
Dear MITRE Team, I am currently working on a Data Science problem involving the CAPEC dataset. I am working in Python and I am using this great repository where the...
Hi there! For ICS techniques have platforms like: Control Server, Field Controller/RTU/PLC/IED, Safety Instrumented System/Protection Relay, etc. These are mentioned at the technique pages as well as in the Navigator...
v13.0 bundle ids match in both mitre/cti and mitre-attack/attack-stix-data, but content is different
when we build a copy of the attack website for our sneakernet enclave, we typically use the mitre/cti copy of the stix. But our mirror of this site is behind...
Why in the enterprise JSON there is a relationship such as: ``` "description": "[Imminent Monitor](https://attack.mitre.org/software/S0434) has a module for performing remote desktop access.(Citation: QiAnXin APT-C-36 Feb2019)", "relationship_type": "uses", "source_ref": "tool--8f8cd191-902c-4e83-bf20-b57c8c4640e9",...
Both enterprise and mobile x-mitre-matrices are missing x_mitre_domains field in exported json files.