Skip to main content
SecurityXP

MITRE ATT&CK April 2021 Update: New Techniques

· 10 min read · SecurityXP Editorial Desk

MITRE ATT&CK® is a globally accessible knowledge base of adversary tactics and techniques based on real-world observations. The ATT&CK knowledge base is used as a foundation for the development of specific threat models and methodologies in the private sector, in government, and in the cybersecurity product and service community. With the creation of ATT&CK, MITRE is fulfilling its mission to solve problems for a safer world — by bringing communities together to develop more effective cybersecurity. ATT&CK is open and available to any person or organization for use at no charge. MITRE ATT&CK® Released Updates in April 2021 With Additional Techniques and Structuring update versioned as ATT&CK v9. “The April 2021 (v9) ATT&CK release updates Techniques, Groups, and Software for Enterprise, Mobile, and ICS. The biggest changes are a change in how we describe data sources, the addition of the Containers and Google Workspace platforms, and the replacement of the AWS, GCP, and Azure platforms with a single IaaS (Infrastructure as a Service) platform. An accompanying blog post describes these changes and additions in more detail, with a focus on the new structure of data sources.” As stated by MITRE. Attck Red This version of ATT&CK for Enterprise contains 14 Tactics, 185 Techniques, and 367 Sub-techniques.

Techniques

Enterprise New Techniques:

Technique changes:

Minor Technique changes:

Technique revocations: No changes Technique deprecations: No changes Mobile New Techniques:

Technique changes:

Minor Technique changes:

Technique revocations: No changes Technique deprecations: No changes

Software

Enterprise New Software:

Software changes:

Minor Software changes:

Software revocations: No changes Software deprecations: No changes Mobile New Software:

Software changes:

Minor Software changes: No changes Software revocations: No changes Software deprecations: No changes

Groups

Enterprise New Groups:

Group changes:

Minor Group changes:

Group revocations:

  • UNC2452 (revoked by APT29)

Group deprecations: No changes Group deletions:

  • Charming Kitten

Mobile New Groups:

Group changes:

Minor Group changes: No changes Group revocations: No changes Group deprecations: No changes

Mitigations

Enterprise New Mitigations: No changes Mitigation changes: No changes Minor Mitigation changes:

Mitigation revocations: No changes Mitigation deprecations: No changes Mitigation deletions:

  • Group Policy Modification Mitigation

Mobile New Mitigations: No changes Mitigation changes: No changes Minor Mitigation changes:

Mitigation revocations: No changes Mitigation deprecations: No changes Resources:

  1. https://attack.mitre.org/
  2. https://attack.mitre.org/resources/updates/
SE SecurityXP Editorial Desk
SecurityXP Editorial Desk Vulnerability Research & News Board

Automated and analyst-reviewed threat intelligence briefings tracking active exploitation campaigns, CVE disclosures, and extortion group activity.

Security Digest

Get the latest cybersecurity news, vulnerability alerts, and threat intelligence delivered to your inbox.

Related Articles