saas-attacks
saas-attacks copied to clipboard
Reconsider not publishing to Mitre ATT&CK
This is a great collection of TTPs that I reference frequently but now that ATT&CK Enterprise has a SaaS Matrix is there any thought to submitting these techniques to ATT&CK?
This will help reach a wider audience and support downstream CTI pipelines via MITRE's TAXII workbench.
I agree with this. I also think this repository is more "identity" centric than "saas".
At least, to me, "Identity attack matrix" makes more sense.