Threat Intelligence
MITRE ATT&CK Coverage
See which techniques you can detect, with evidence.
Available as a standalone module · Add to my package18,406Active IOCs
57Matches today
212Techniques covered
- Coverage heatmapActive
- Evidence per techniqueActive
- Gap analysisActive
- Tactic-level summariesActive
What it does
An ATT&CK matrix built from your own rules and events. Click a technique to see the rules that cover it and the latest evidence.
Coverage heatmap
Evidence per technique
Gap analysis
Tactic-level summaries
How it worksin three steps.
Ingest
Open and commercial feeds refresh on a schedule.
Match
Every IP, domain, URL and hash in your events is checked.
Prioritise
Matches raise risk scores and open incidents where it matters.
Works best withthese modules.
See all 30 modules
Detection & Response
Incident Management
Correlated incidents with severity, assets and timeline.
Learn more Detection & ResponseThreat Hunting
Hypothesis-driven hunts across all your telemetry.
Learn more Endpoint SecurityVulnerability Management
Installed software matched against known CVEs.
Learn moreAlso in Threat Intelligence
Ready to see it on your own data?
A 30-minute walkthrough with an engineer, tailored to your environment.