Skip to content

MITRE ATT&CK Enterprise techniques: tactics, mitigations and adversary use

Commercial use OKFresh
Query in workbench

Follow this dataset

Get a notice in your feed when a new snapshot is published. Optionally, we also POST it to your webhook.

Must be a public https address. We never follow redirects.

The full snapshot isn't published yet — check back after the next refresh.Download sample CSVDownload sample JSONSample rows only (up to 20) — not the complete dataset.

Value-added panel of the official MITRE ATT&CK Enterprise knowledge base (keyless STIX 2.1 bundle, royalty-free commercial license with attribution): one row per technique — top-level and sub-techniques, revoked/deprecated flagged — with its tactics, platforms, mitigations, detection strategy, and how many malware families, tools, intrusion sets and campaigns are recorded as using it. The technique taxonomy join key for detection-coverage gap analysis: join security-control coverage on technique_id to find techniques with heavy adversary use and no coverage.

Rows
858
Columns
26
Source cadence
Quarterly
Last refreshed
Oct 3, 2026
Theme
technology

Use your own AI key

Once today's free allowance is used up, AI features can run on your own provider account.

Kept in this browser tab only (cleared when you close it) and sent with each AI request. Our servers use it for that request and never store or log it.