Skip to main content
SecurityXP

MITRE ATT&CK® Released Updates in April 2021 With Additional Techniques and Structuring

· 10 min read · Staff

MITRE ATT&CK® is a globally accessible knowledge base of adversary tactics and techniques based on real-world observations. The ATT&CK knowledge base is used as a foundation for the development of specific threat models and methodologies in the private sector, in government, and in the cybersecurity product and service community. With the creation of ATT&CK, MITRE is fulfilling its mission to solve problems for a safer world — by bringing communities together to develop more effective cybersecurity. ATT&CK is open and available to any person or organization for use at no charge. MITRE ATT&CK® Released Updates in April 2021 With Additional Techniques and Structuring update versioned as ATT&CK v9. “The April 2021 (v9) ATT&CK release updates Techniques, Groups, and Software for Enterprise, Mobile, and ICS. The biggest changes are a change in how we describe data sources, the addition of the Containers and Google Workspace platforms, and the replacement of the AWS, GCP, and Azure platforms with a single IaaS (Infrastructure as a Service) platform. An accompanying blog post describes these changes and additions in more detail, with a focus on the new structure of data sources.” As stated by MITRE. This version of ATT&CK for Enterprise contains 14 Tactics, 185 Techniques, and 367 Sub-techniques.

Techniques

Enterprise New Techniques:

Technique changes:

Minor Technique changes:

Technique revocations: No changes Technique deprecations: No changes Mobile New Techniques:

Technique changes:

Minor Technique changes:

Technique revocations: No changes Technique deprecations: No changes

Software

Enterprise New Software:

Software changes:

Minor Software changes:

Software revocations: No changes Software deprecations: No changes Mobile New Software:

Software changes:

Minor Software changes: No changes Software revocations: No changes Software deprecations: No changes

Groups

Enterprise New Groups:

Group changes:

Minor Group changes:

Group revocations:

  • UNC2452 (revoked by APT29)

Group deprecations: No changes Group deletions:

  • Charming Kitten

Mobile New Groups:

Group changes:

Minor Group changes: No changes Group revocations: No changes Group deprecations: No changes

Mitigations

Enterprise New Mitigations: No changes Mitigation changes: No changes Minor Mitigation changes:

Mitigation revocations: No changes Mitigation deprecations: No changes Mitigation deletions:

  • Group Policy Modification Mitigation

Mobile New Mitigations: No changes Mitigation changes: No changes Minor Mitigation changes:

Mitigation revocations: No changes Mitigation deprecations: No changes Resources:

  1. https://attack.mitre.org/
  2. https://attack.mitre.org/resources/updates/
SS
SecurityXP Staff Writer Staff News Correspondent

Experienced cybersecurity journalist tracking active ransomware outbreaks, regulatory compliance shifts (GDPR/CCPA), and global corporate data breach remediations.

Security Digest

Get the latest cybersecurity news, vulnerability alerts, and threat intelligence delivered to your inbox.

Related Articles