https://github.com/splunk/macro-level-attack-trending
Aggregated ATT&CK technique reporting data. Presented at Splunk GovSummit December 2022
https://github.com/splunk/macro-level-attack-trending
Last synced: 2 months ago
JSON representation
Aggregated ATT&CK technique reporting data. Presented at Splunk GovSummit December 2022
- Host: GitHub
- URL: https://github.com/splunk/macro-level-attack-trending
- Owner: splunk
- License: apache-2.0
- Created: 2022-11-18T14:45:09.000Z (over 3 years ago)
- Default Branch: main
- Last Pushed: 2025-01-22T17:04:45.000Z (over 1 year ago)
- Last Synced: 2025-01-22T18:19:55.347Z (over 1 year ago)
- Size: 8.73 MB
- Stars: 14
- Watchers: 5
- Forks: 3
- Open Issues: 0
-
Metadata Files:
- Readme: README.md
- License: LICENSE
Awesome Lists containing this project
README
# macro-level-attack-trending
POC: rfetterman@splunk.com
This repo contains Aggregated ATT&CK technique reporting data. This work was presented at Splunk GovSummit 2022, and RSA 2023 ("Threat-Informed Planning").
Last Updated: Sept 9, 2024
Link to Blogs:
- 2024: https://www.splunk.com/en_us/blog/security/macro-att-ck-2024-a-five-year-perspective.html
- 2023: https://www.splunk.com/en_us/blog/security/revisiting-the-big-picture-macro-level-att-ck-updates-for-2023.html
- 2022: https://www.splunk.com/en_us/blog/security/zoom-enhance-finding-value-in-macro-level-att-ck-reporting.html
Private Sector Yearly Threat Intelligence Reporting Sources:
- Mandiant M-Trends (2020-2024),
- Red Canary Threat Reports (2020-2024),
- Center for Threat Informed Defense (CTID) – ATT&CK Sightings Project (2022, 2024)
Public Sector Threat Intelligence Reporting Sources:
- CISA National Cyber Awareness System – Alerts (2020-2024)

### License
Copyright 2023 Splunk Inc.
Licensed under the Apache License, Version 2.0 (the "License");
you may not use this file except in compliance with the License.
You may obtain a copy of the License at
http://www.apache.org/licenses/LICENSE-2.0
Unless required by applicable law or agreed to in writing,
software distributed under the License is distributed on an "AS IS" BASIS,
WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
See the License for the specific language governing permissions and limitations under the License.