MITRE ATT&CK python library
Project description
mitreattack-python
This repository contains a library of Python tools and utilities for working with ATT&CK data. For more information, see the full documentation on ReadTheDocs.
Install
To use this package, install the mitreattack-python library with pip:
pip install mitreattack-python
MitreAttackData Library
The MitreAttackData library is used to read in and work with MITRE ATT&CK STIX 2.0 content. This library provides
the ability to query the dataset for objects and their related objects. This is the main content of mitreattack-python;
you can read more about other modules in this library under "Additional Modules".
Related MITRE Work
CTI
Cyber Threat Intelligence repository of the ATT&CK catalog expressed in STIX 2.0 JSON. This repository also contains our USAGE document which includes additional examples of accessing and parsing our dataset in Python.
ATT&CK
ATT&CK® is a curated knowledge base and model for cyber adversary behavior, reflecting the various phases of an adversary’s lifecycle, and the platforms they are known to target. ATT&CK is useful for understanding security risk against known adversary behavior, for planning security improvements, and verifying defenses work as expected.
STIX
Structured Threat Information Expression (STIX™) is a language and serialization format used to exchange cyber threat intelligence (CTI).
STIX enables organizations to share CTI with one another in a consistent and machine-readable manner, allowing security communities to better understand what computer-based attacks they are most likely to see and to anticipate and/or respond to those attacks faster and more effectively.
STIX is designed to improve many capabilities, such as collaborative threat analysis, automated threat exchange, automated detection and response, and more.
https://oasis-open.github.io/cti-documentation/
Contributing
To contribute to this project, either through a bug report, feature request, or merge request, please see the Contributors Guide.
Project details
Release history Release notifications | RSS feed
Download files
Download the file for your platform. If you're not sure which to choose, learn more about installing packages.
Source Distribution
Built Distribution
Filter files by name, interpreter, ABI, and platform.
If you're not sure about the file name format, learn more about wheel file names.
Copy a direct link to the current filters
File details
Details for the file mitreattack_python-5.4.0.tar.gz.
File metadata
- Download URL: mitreattack_python-5.4.0.tar.gz
- Upload date:
- Size: 540.1 kB
- Tags: Source
- Uploaded using Trusted Publishing? Yes
- Uploaded via: twine/6.1.0 CPython/3.13.7
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
4a2d26a1006486b9c9d5e61355115d640458f31f84dc91e7aea9ab536ca9190b
|
|
| MD5 |
f37ffb967bee22c80ed1c5c13b25fd61
|
|
| BLAKE2b-256 |
a48611003d7c16308d00defec041680a9e9289d43f6ae39580b597c1051921f8
|
Provenance
The following attestation bundles were made for mitreattack_python-5.4.0.tar.gz:
Publisher:
lint-publish.yml on mitre-attack/mitreattack-python
-
Statement:
-
Statement type:
https://in-toto.io/Statement/v1 -
Predicate type:
https://docs.pypi.org/attestations/publish/v1 -
Subject name:
mitreattack_python-5.4.0.tar.gz -
Subject digest:
4a2d26a1006486b9c9d5e61355115d640458f31f84dc91e7aea9ab536ca9190b - Sigstore transparency entry: 864351490
- Sigstore integration time:
-
Permalink:
mitre-attack/mitreattack-python@a55039f3e437e22df7eae618cafb1faef301e972 -
Branch / Tag:
refs/tags/v5.4.0 - Owner: https://github.com/mitre-attack
-
Access:
public
-
Token Issuer:
https://token.actions.githubusercontent.com -
Runner Environment:
github-hosted -
Publication workflow:
lint-publish.yml@a55039f3e437e22df7eae618cafb1faef301e972 -
Trigger Event:
push
-
Statement type:
File details
Details for the file mitreattack_python-5.4.0-py3-none-any.whl.
File metadata
- Download URL: mitreattack_python-5.4.0-py3-none-any.whl
- Upload date:
- Size: 560.9 kB
- Tags: Python 3
- Uploaded using Trusted Publishing? Yes
- Uploaded via: twine/6.1.0 CPython/3.13.7
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
14def8cde357823f903d34cd60319784c4a5d290fb79413e52638b905e3bdbd1
|
|
| MD5 |
b221195845417dbc3261ad9a434ef01d
|
|
| BLAKE2b-256 |
0ebff5827026995a2cfc90b21f065ed1cd771d4d39560b02417f5f7d7fb506d2
|
Provenance
The following attestation bundles were made for mitreattack_python-5.4.0-py3-none-any.whl:
Publisher:
lint-publish.yml on mitre-attack/mitreattack-python
-
Statement:
-
Statement type:
https://in-toto.io/Statement/v1 -
Predicate type:
https://docs.pypi.org/attestations/publish/v1 -
Subject name:
mitreattack_python-5.4.0-py3-none-any.whl -
Subject digest:
14def8cde357823f903d34cd60319784c4a5d290fb79413e52638b905e3bdbd1 - Sigstore transparency entry: 864351492
- Sigstore integration time:
-
Permalink:
mitre-attack/mitreattack-python@a55039f3e437e22df7eae618cafb1faef301e972 -
Branch / Tag:
refs/tags/v5.4.0 - Owner: https://github.com/mitre-attack
-
Access:
public
-
Token Issuer:
https://token.actions.githubusercontent.com -
Runner Environment:
github-hosted -
Publication workflow:
lint-publish.yml@a55039f3e437e22df7eae618cafb1faef301e972 -
Trigger Event:
push
-
Statement type: