Adjectives for ATT&CK
Ben Langrill
@LangrillSec
Optimizer, LLC
Adjectives
Public Techniques that exist in GitHub, Kali Linux or other
readily-available toolkit.
Altered Modifications to public techniques that are still
fundamentally the same technique.
Bespoke A novel implementation of a technique or even a new
subtechnique.
Example - Webshells
Public Something from /usr/share/webshells on Kali
Altered Modified version of cmdasp.aspx that evades Windows
Defender signatures and retains functionality
Bespoke A novel webshell that matches a target’s web
environment

More Related Content

PDF
Next-Gen Threat-Informed Defense: Human-Assisted Intelligent Agents - Rajesh ...
PDF
Birds of a Feather: The Evolution of Threat Actor Prioritization, Gap Analysi...
PDF
Using ATT&CK and MITRE CTID’s StP Frameworks to Assess Threat Detection Resil...
PDF
Bridging the Gap: Enhancing Detection Coverage with Atomic Red Team, Sigma, a...
PDF
SaaSy ATT&CK – Practical ATT&CK usage for SaaS-based Telemetry - Aaron Shelmire
PDF
I'll take ATT&CK techniques that can be done for $1000, Alex. - Ben Langrill
PDF
Practical Application of MITRE ATT&CK: Real World Usage in a Corporate Enviro...
PDF
This is why we don’t shout “Bingo”: Analyzing ATT&CK Integration in Endpoint ...
Next-Gen Threat-Informed Defense: Human-Assisted Intelligent Agents - Rajesh ...
Birds of a Feather: The Evolution of Threat Actor Prioritization, Gap Analysi...
Using ATT&CK and MITRE CTID’s StP Frameworks to Assess Threat Detection Resil...
Bridging the Gap: Enhancing Detection Coverage with Atomic Red Team, Sigma, a...
SaaSy ATT&CK – Practical ATT&CK usage for SaaS-based Telemetry - Aaron Shelmire
I'll take ATT&CK techniques that can be done for $1000, Alex. - Ben Langrill
Practical Application of MITRE ATT&CK: Real World Usage in a Corporate Enviro...
This is why we don’t shout “Bingo”: Analyzing ATT&CK Integration in Endpoint ...

More from MITRE ATT&CK (20)

PDF
Every Cloud Has a Purple Lining - Arun Seelagan
PDF
Confession: 3 Things I Wish I Knew About MITRE ATT&CK When I Was an FBI Profi...
PDF
ATT&CKcon 5.0 Keynote - From Ticket Closers to Practitioners- How Great Secu...
PDF
ATT&CKcon 5.0 Lightning Talks - Various Speakers
PDF
MITRE ATT&CK Updates: Defensive ATT&CK - Lex Crumpton
PDF
MITRE ATT&CK Updates: Enterprise - Casey Knerr
PDF
MITRE ATT&CK Updates: CTI - Path Forward - Joe Slowik
PDF
MITRE ATT&CK Updates: Software - Jared Ondricek
PDF
State of the ATT&CK 2024 - Adam Pennington
PDF
Sources of ATT&CK: A Bibliographic Journey through Enterprise ATT&CK - Robert...
PDF
Updates from The Center for Threat Informed Defense - Jon Baker
PDF
Go Go Ransom Rangers: Diving into Akira’s Linux Variant with ATT&CK - Nicole ...
PDF
ATT&CK From Basic Principles - Tareq AlKhatib
PDF
Lifecycle-Aware Power Side-Channel Malware Detection - Alexander Cathis
PDF
From ATT&CK to CL&IM: Cyber Insurance Data Modeling using MITRE ATT&CK and be...
PDF
The MITRE ATT&CK "Collection" Tactic is Missing Very Important Techniques: D...
PDF
What sets us apart? Industries vs. infrastructure as differentiator for techn...
PDF
Dealing With ATT&CK's Different Levels Of Detail
PDF
Automating testing by implementing ATT&CK using the Blackboard Architecture
PDF
I can haz cake: Benefits of working with MITRE on ATT&CK
Every Cloud Has a Purple Lining - Arun Seelagan
Confession: 3 Things I Wish I Knew About MITRE ATT&CK When I Was an FBI Profi...
ATT&CKcon 5.0 Keynote - From Ticket Closers to Practitioners- How Great Secu...
ATT&CKcon 5.0 Lightning Talks - Various Speakers
MITRE ATT&CK Updates: Defensive ATT&CK - Lex Crumpton
MITRE ATT&CK Updates: Enterprise - Casey Knerr
MITRE ATT&CK Updates: CTI - Path Forward - Joe Slowik
MITRE ATT&CK Updates: Software - Jared Ondricek
State of the ATT&CK 2024 - Adam Pennington
Sources of ATT&CK: A Bibliographic Journey through Enterprise ATT&CK - Robert...
Updates from The Center for Threat Informed Defense - Jon Baker
Go Go Ransom Rangers: Diving into Akira’s Linux Variant with ATT&CK - Nicole ...
ATT&CK From Basic Principles - Tareq AlKhatib
Lifecycle-Aware Power Side-Channel Malware Detection - Alexander Cathis
From ATT&CK to CL&IM: Cyber Insurance Data Modeling using MITRE ATT&CK and be...
The MITRE ATT&CK "Collection" Tactic is Missing Very Important Techniques: D...
What sets us apart? Industries vs. infrastructure as differentiator for techn...
Dealing With ATT&CK's Different Levels Of Detail
Automating testing by implementing ATT&CK using the Blackboard Architecture
I can haz cake: Benefits of working with MITRE on ATT&CK
Ad

Recently uploaded (20)

PDF
NewMind AI Weekly Chronicles – August ’25 Week IV
PDF
Electrocardiogram sequences data analytics and classification using unsupervi...
PDF
Transform-Your-Supply-Chain-with-AI-Driven-Quality-Engineering.pdf
PPTX
Presentation - Principles of Instructional Design.pptx
PDF
Human Computer Interaction Miterm Lesson
DOCX
Basics of Cloud Computing - Cloud Ecosystem
PDF
Rapid Prototyping: A lecture on prototyping techniques for interface design
PDF
A symptom-driven medical diagnosis support model based on machine learning te...
PDF
Connector Corner: Transform Unstructured Documents with Agentic Automation
PDF
The AI Revolution in Customer Service - 2025
PDF
substrate PowerPoint Presentation basic one
PDF
Aug23rd - Mulesoft Community Workshop - Hyd, India.pdf
PPTX
MuleSoft-Compete-Deck for midddleware integrations
PDF
zbrain.ai-Scope Key Metrics Configuration and Best Practices.pdf
PDF
AI.gov: A Trojan Horse in the Age of Artificial Intelligence
PDF
Planning-an-Audit-A-How-To-Guide-Checklist-WP.pdf
PDF
Transform-Quality-Engineering-with-AI-A-60-Day-Blueprint-for-Digital-Success.pdf
PDF
Ensemble model-based arrhythmia classification with local interpretable model...
PDF
SaaS reusability assessment using machine learning techniques
PDF
The-Future-of-Automotive-Quality-is-Here-AI-Driven-Engineering.pdf
NewMind AI Weekly Chronicles – August ’25 Week IV
Electrocardiogram sequences data analytics and classification using unsupervi...
Transform-Your-Supply-Chain-with-AI-Driven-Quality-Engineering.pdf
Presentation - Principles of Instructional Design.pptx
Human Computer Interaction Miterm Lesson
Basics of Cloud Computing - Cloud Ecosystem
Rapid Prototyping: A lecture on prototyping techniques for interface design
A symptom-driven medical diagnosis support model based on machine learning te...
Connector Corner: Transform Unstructured Documents with Agentic Automation
The AI Revolution in Customer Service - 2025
substrate PowerPoint Presentation basic one
Aug23rd - Mulesoft Community Workshop - Hyd, India.pdf
MuleSoft-Compete-Deck for midddleware integrations
zbrain.ai-Scope Key Metrics Configuration and Best Practices.pdf
AI.gov: A Trojan Horse in the Age of Artificial Intelligence
Planning-an-Audit-A-How-To-Guide-Checklist-WP.pdf
Transform-Quality-Engineering-with-AI-A-60-Day-Blueprint-for-Digital-Success.pdf
Ensemble model-based arrhythmia classification with local interpretable model...
SaaS reusability assessment using machine learning techniques
The-Future-of-Automotive-Quality-is-Here-AI-Driven-Engineering.pdf
Ad

Adjectives for ATT&CK

  • 1. Adjectives for ATT&CK Ben Langrill @LangrillSec Optimizer, LLC
  • 2. Adjectives Public Techniques that exist in GitHub, Kali Linux or other readily-available toolkit. Altered Modifications to public techniques that are still fundamentally the same technique. Bespoke A novel implementation of a technique or even a new subtechnique.
  • 3. Example - Webshells Public Something from /usr/share/webshells on Kali Altered Modified version of cmdasp.aspx that evades Windows Defender signatures and retains functionality Bespoke A novel webshell that matches a target’s web environment