Insider Threat Knowledge Base | MITRE-Engenuity
The cybersecurity landscape is perpetually evolving, and with it, the nature of insider threats. In response to this challenging environment, we created an expansion of the Insider Threat TTP Knowledge Base. This platform represents a significant update to our earlier work, adding new techniques, identifying mitigations, and creating a new data source to help identify insiders called Observable Human Indicators (OHIs). For those new to this initiative, our methodology is detailed on our earlier blog post, which provides a foundational understanding of our approach. The Insider Threat TTP KB is not just another database; it’s the first of its kind to offer an evidence-based, cross-sector, multi-organizational, and publicly-available compendium of insider threat tactics, techniques, and procedures (TTPs). This endeavor was conducted in partnership with our Center research participants CrowdStrike, HCA Healthcare, JPMorgan Chase Bank, N.A., Lloyds Banking Group, Microsoft Corporation, Nex
The cybersecurity landscape is perpetually evolving, and with it, the nature of insider threats. In response to this challenging environment, we created an expansion of the Insider Threat TTP Knowledge Base. This platform represents a significant update to our earlier work, adding new techniques, identifying mitigations, and creating a new data source to help identify insiders called Observable Human Indicators (OHIs). For those new to this initiative, our methodology is detailed on our earlier blog post, which provides a foundational understanding of our approach. The Insider Threat TTP KB is
Explore this link on the map →