Talon Security logo

Mapping Talon’s Enterpriser Browser Capabilities To the MITRE ATT&CK Framework

What is MITRE ATT&CK ?

MITRE ATT&CK® is a comprehensive, open framework for consistently identifying, classifying, and deconstructing cyberattacks. It includes a vast knowledge base of common adversarial tactics, techniques, and procedures (TTPs) based on real-world observations. Organizations can use ATT&CK to assess risks, strengthen security, and improve threat detection and mitigation efforts.

The ATT&CK framework provides a common taxonomy that lets security professionals (SOC staff, threat hunters, red and blue teams, pen testers, security vendors, threat intelligence providers, etc.) easily exchange information and collaborate using the same language. It helps information security teams identify security gaps, reduce vulnerabilities, and shore up defenses.

ATT&CK organizes adversarial techniques into a collection of tactics to help security professionals efficiently detect, track, and mitigate threats. The tactics describe what the adversary is trying to accomplish, e.g., gain initial access to a system. The techniques (and sub-techniques) describe the actions the adversary takes to achieve their goals, e.g., via a phishing attack.

The current matrix, ATT&CK v13, includes three distinct collections of tactics:

  • Enterprise tactics for Windows, macOS, Linux, cloud, and network systems
  • Mobile tactics for Apple iOS and Android devices
  • Industrial Control Systems (ICS) tactics for Supervisory Control and Data Acquisition (SCADA) systems and other industrial control systems

The Talon Enterprise Browser is a hardened, Chromium-based browser with advanced security functionality, specifically designed to protect modern web applications and hybrid workforces. The Talon browser transforms the usual web browser into a full-fledged enterprise security monitoring and policy enforcement engine, giving corporate IT and security teams deep visibility and tight control over web services and user actions.

This matrix describes how Talon’s Enterprise Browser addresses certain MITRE ATT&CK enterprise tactics, techniques, and sub-techniques.

Talon’s Coverage of MITRE ATT&CK (1 – 2)
Reconnaissance
Resource Development
Talon’s Coverage of MITRE ATT&CK (3 – 4)
Initial Access
Execution
Talon’s Coverage of MITRE ATT&CK (5 – 6)
Persistence
Privilege Escalation
Talon’s Coverage of MITRE ATT&CK (7 – 8)
Defense Evasion
Credential Access
Talon’s Coverage of MITRE ATT&CK (9 – 10)
Discovery
Lateral Movement
Talon’s Coverage of MITRE ATT&CK (11 – 12)
Collection
Command and Control
Talon’s Coverage of MITRE ATT&CK (13 – 14)
Exfiltration
Impact

Learn how Talon’s Enterprise Browser maps to the MITRE ATT&CK framework

Meet Talon at Gartner Security and Risk Management Summit 2023 in London