

Atomic Threat Coverage
74 posts

@atc_project
Actionable analytics designed to combat threats






Excited for @NotionHQ's potential use with cybersecurity teams. It provides a beautiful interface for documenting processes that, through the new @NotionAPI, can effectively be used to drive remediation automations using page property metadata (using @tines_io).











We'd like to share a draft of a Sigma extension named "Sigma Correlations" that extends the standard & allows the definition of aggregations & relations between Sigma rules - please provide feedback in the issues section on Github 1drv.ms/w/s!AmV9jfmd5V…









The next Sprint starts on October 5! We will focus on Simulation, Detection & Response: develop @redcanaryco #AtomicRedTeam tests, @sigma_hq Rules, and @TheHive_Project Responders; improving their coverage of @MITREattack and @atc_project RE&CT frameworks oscd.community/sprints/sprint…




RE&CT framework released! A knowledge base of actionable Incident Response techniques, based on @MITREattack philosophy. Mapping to ATT&CK / AMITT, export to @TheHive_Project templates, visualization in the Navigator, and more! atc-project.github.io/atc-react/ #incidentresponse #dfir



