Establish the scope of MITRE ATT&CK (Adversarial Tactics Techniques and Common Knowledge) - globally accessible knowledge base of adversary tactics and techniques based on real-world observations. Developed by MITRE Corporation (non-profit Federally Funded Research and Development Center FFRDC chartered by US Department of Defense and other federal agencies + headquartered McLean Virginia and Bedford Massachusetts). Initially released by MITRE 2013 + Enterprise + ATT&CK for Mobile + ATT&CK for ICS (Industrial Control Systems) + Cloud matrices (AWS + Azure + Google Cloud + SaaS + Office 365 + IaaS + Network) + Container matrix (added v10 2021). Released as open standard under Creative Commons Attribution 4.0 International (CC BY 4.0). Maintained by MITRE Engenuity Center for Threat-Informed Defense (CTID) and global cybersecurity community. v15 published 30 April 2024 with significant ICS enhancements + Identity Provider techniques + v16 published 31 October 2024 with major data sources refactor + structured detection content + v17 April 2025 with deception techniques + active defense additions. Globally adopted by CISA + NCSC UK + ACSC Australia + CSE Canada + ANSSI France + BSI Germany + NCSC NL + CERT-EU + FBI + DOD + NSA + USCYBERCOM + Five Eyes + EU CSIRT Network + private SOCs + threat intelligence vendors.
The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.