Skip to content

Implement MITRE ATT&CK for ICS TTPs #16

@bondlegend4

Description

@bondlegend4

Global ID: VICS-SEC-001


Estimated Time: 6-7 days

Problem

Need realistic attack patterns following MITRE ATT&CK for ICS framework.

Solution Tasks

  • Map scenarios to ATT&CK tactics
  • Implement ransomware attack (T0881 Service Stop)
  • Implement sensor spoofing (T0855 Unauthorized Command Message)
  • Implement physical damage (T0879 Damage to Property)
  • Create kill chain progression for each
  • Log TTP execution for learning
  • Link TTPs to NIST controls
  • Document detection strategies

Acceptance Criteria

  • Each scenario maps to specific TTPs
  • Kill chains progress realistically
  • TTPs logged with timestamps
  • Detection opportunities visible
  • Mitigation controls functional
  • AAR shows TTP progression

Metadata

Metadata

Assignees

No one assigned

    Projects

    No projects

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions