← Security+ glossary

Automation and incident response

MITRE ATT&CK framework

A publicly available knowledge base of the tactics, techniques and procedures (TTPs) of real attackers, organized into a matrix from initial access to exfiltration. It is used to map detection coverage, guide threat hunting, emulate adversaries and describe incidents with a shared vocabulary.

All Security+ guides →

Related terms

Get CertOwl on the App Store

Free download · A+ and Network+ completely free
+ daily lessons, flashcards and full exam simulations