{"repo":"center-for-threat-informed-defense/adversary_emulation_library","free":true,"listed":false,"github":"https://github.com/center-for-threat-informed-defense/adversary_emulation_library","clone":"git clone https://github.com/center-for-threat-informed-defense/adversary_emulation_library.git","description":"An open library of adversary emulation plans designed to empower organizations to test their defenses based on real-world TTPs.","language":"C","stars":2151,"topics":["ctid","cybersecurity","threat-informed-defense","mitre-attack","red-team","cyber-threat-intelligence","adversary-emulation","adversary-emulation-plans"],"license":"Apache-2.0","category":"security-tools","readme_excerpt":"Adversary Emulation Library In collaboration with Center Participants, the MITRE Center for Threat-Informed Defense (Center) maintains a library of adversary emulation plans to allow organizations to evaluate their defensive capabilities against the real-world threats they face. Emulation plans are an essential component in testing current defenses for organizations that are looking to prioritize their defenses around actual adversary behavior. Focusing our energies on developing a set of common emulation plans that are available to all means that organizations can use their limited time and resources to focus on understanding how their defenses actually fare against real-world threats. The library contains two types of adversary emulation plans: full emulation and micro emulation. Full emulation plans are a comprehensive approach to emulating a specific adversary, e.g. FIN6, from initial access to exfiltration. These plans emulate a wide range of ATT&CK tactics & techniques and are designed to emulate a real breach from the designated adversary. Micro emulation plans are a focused approach to emulating compound behaviors seen across multiple adversaries, e.g. webshells. These plans emulate a small amount of ATT&CK techniques that are typically performed as part of one adversary action. Also see our blogs on the Adversary Emulation Library and Micro Emulation Plans. Available adversary emulation plans are listed below: Full Emulation Plans Intelligence Summary ---------------","default_branch":null,"files":null,"tree":[],"storefront":"/r/center-for-threat-informed-defense","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/center-for-threat-informed-defense/adversary_emulation_library/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}