Security news aggregator

Latest coverage for MITRE

Explore the latest MITRE frameworks and cybersecurity defense strategies. Stay informed on ATT&CK updates and MITRE-related infosec insights.

1 headlines in this view

Refine the feed

Search across headline titles and summaries.

Tag briefing

Background for this topic.

The MITRE Corporation is a not-for-profit organization that operates multiple federally funded research and development centers (FFRDCs) in the United States. Within the realm of information security, MITRE is known for its contribution to cybersecurity standards and frameworks, most notably the MITRE ATT&CK framework, and the Common Vulnerabilities and Exposures (CVE) system.

The MITRE ATT&CK framework is a comprehensive matrix of tactics and techniques observed in millions of real-world cyber attacks. It provides a structured approach for cybersecurity professional to track, analyze, and respond to cyber threats by understanding threat actors' behavior and methodologies. By focusing on the post-compromise behavior of attackers, the framework serves as a vital resource in detecting and mitigating such threats in a proactive manner.

The Common Vulnerabilities and Exposures (CVE) system is another critical cybersecurity standard that MITRE maintains. It is a list of publicly known cybersecurity vulnerabilities and exposures. Each entry in the CVE system includes an identifier number, a description, and at least one public reference. This system facilitates the sharing of data across different security tools and services, ensuring various stakeholders can openly communicate and manage common vulnerabilities and exposures in a standardized way.

Through these contributions and others, MITRE plays a significant role in enhancing and shaping global information security practices and defense mechanisms.

Volume over time

Weekly headline count for the current query.

Showing 1 most recent headlines Filtered view

Cough, cough, use Rust. Plus: Eight more exploited bugs added to CISA's must-patch list The most dangerous type of software bug is the out-of-bounds write, according to MITRE this week. This type of flaw is responsible for 70 CVE-tagged holes in the US government's list of known vulnerabilities that are under active attack and need to be patched, we note.…