Reference library
The reference library.
MITRE ATT&CK for adversary behavior, D3FEND for defensive countermeasures, and ATLAS for attacks on AI and ML systems. Plus the purple matrix, use case development, a detection course, and incident response playbooks. Public. No account.
- ATT&CK hubAdversary techniques. How an attack proceeds, so a detection has something specific to catch.14 tactics
- D3FEND hubDefensive countermeasures: model, harden, detect, isolate, deceive, evict, restore.7 tactics
- Purple matrixPick an attack and see what answers it, or pick a defense and see what it covers.ATT&CK ↔ D3FEND
- Use case developmentBusiness objective, then threat, then implementation. The public method behind the AI Security Use-Case Audit.L1 to L3
- Detection courseWriting detections that hold up: frameworks in practice, rule authoring, and purple team operations.6 modules
- IR playbooksIncident response procedures written to be used during an incident.20 playbooks
- Credential notesA build exam. Ship working defensive tooling, then defend the design. Coming soon.Coming soon