NEW
Font size
WorksheetsUnderstanding Mitre ATT&CK Framework
Total questions: 10
Worksheet time: 5mins
What is the primary purpose of the Mitre ATT&CK framework?
To provide a knowledge base of adversary tactics and techniques for improving cybersecurity.
To establish a framework for incident response planning.
To serve as a guide for software development methodologies.
To outline best practices for network configuration.
Name one tactic used in the Mitre ATT&CK framework.
Phishing
SQL Injection
Spoofing
DDoS Attack
What does the technique 'Phishing' fall under in the Mitre ATT&CK framework?
Social Engineering
Data Breach
Network Intrusion
Malware Attack
How many main tactics are there in the Mitre ATT&CK framework?
10
14
16
12
What is the difference between a tactic and a technique in the Mitre ATT&CK framework?
A tactic refers to a tool, whereas a technique is a strategy used in attacks.
A tactic is a detailed plan, while a technique is an overall approach to security.
A tactic is a high-level goal of an attack, while a technique is a specific method used to achieve that goal.
A tactic is a specific method, while a technique is a high-level goal.
Can you give an example of a technique used for 'Initial Access'?
Phishing
Credential Stuffing
Malware Injection
Spear Phishing
What tactic involves maintaining access to a compromised system?
access control
data exfiltration
persistence
system isolation
Which technique is associated with 'Credential Dumping'?
Hashcat
Mimikatz
Aircrack-ng
John the Ripper
What is the significance of the Mitre ATT&CK framework in cybersecurity?
The Mitre ATT&CK framework is significant in cybersecurity as it aids in threat modeling, detection, and response by providing a structured approach to understanding adversary behavior.
The Mitre ATT&CK framework is a database for storing user credentials and passwords.
The Mitre ATT&CK framework is primarily used for software development and project management.
The Mitre ATT&CK framework focuses on enhancing user experience in cybersecurity tools.
How can organizations utilize the Mitre ATT&CK framework for threat intelligence?
Organizations can use ATT&CK for compliance audits.
Organizations can ignore ATT&CK for incident response.
Organizations can apply ATT&CK for employee training programs.
Organizations can map incidents to ATT&CK to improve threat detection and response.
