Skip to content

Commit

Permalink
Updated website docs
Browse files Browse the repository at this point in the history
  • Loading branch information
tiffb committed Jul 8, 2024
1 parent 0549a7f commit 954dc9e
Show file tree
Hide file tree
Showing 6 changed files with 156,265 additions and 88 deletions.
20 changes: 14 additions & 6 deletions docs/architecture.rst
Original file line number Diff line number Diff line change
Expand Up @@ -11,16 +11,14 @@ operational zones, and interactions between IT and OT systems.

.. image:: ./_static/ref_arch.png

Building the Reference Architecture
----------------------------------------------

The Defending OT with ATT&CK reference architecture is adapted from the `Purdue Enterprise Reference Architecture (PERA) model <https://www.energy.gov/sites/default/files/2022-10/Infra_Topic_Paper_4-14_FINAL.pdf>`_,
which historically has been the primary reference to describe the structure of OT networks.
ATT&CK for Enterprise and ATT&CK for ICS platforms and assets were reviewed to aid in determining
relevant assets and technologies. Consideration was also given for international standards and
sector-based use cases (e.g., factory automation, maritime transport).

**Architecture Assets**
Architecture Assets
-------------------

Control systems standards and guidance containing reference architectures with assets were reviewed
when developing the assets that comprise Defending OT with ATT&CK's reference architecture. These sources
Expand Down Expand Up @@ -54,8 +52,18 @@ taken when defining the Defending OT with ATT&CK's architecture assets:

.. image:: ./_static/assets.png

The below table provides descriptions for each of the Defending OT with ATT&CK Architecture Assets. All assets can be mapped to
ATT&CK for Enterprise's platforms and/or ATT&CK for ICS' assets.
The below table provides descriptions for each of the 21 identified Defending OT with ATT&CK Architecture Assets. All assets can be mapped to
ATT&CK for Enterprise's platforms and/or ATT&CK for ICS' assets. There are nine assets where ATT&CK for ENterprise and ATT&CK for ICS overlap:

* Control Server
* Human-Machine Interface (HMI)
* Jump Hosts
* Application Server
* Engineering Workstation
* Routers in OT networks
* Data Historian
* VPN Server
* Firewall

+--------------------------------------+---------------------------------------------------------------------------------------------------+
+ Asset Name + Description +
Expand Down
18 changes: 8 additions & 10 deletions docs/collection.rst
Original file line number Diff line number Diff line change
Expand Up @@ -28,22 +28,20 @@ This includes:
- STIX bundle
- multi-domain ATT&CK matrix for Navigator
**Download the Threat Collection**

.. <<!-- TO DO --!>>
get downloads for dota
Download the Threat Collection
------------------------------

.. raw:: html

<p>
<a class="btn btn-primary" target="_blank" href="https://mitre-attack.github.io/attack-navigator/#layerURL=https%3A%2F%2Fcenter-for-threat-informed-defense.github.io%2Finsider-threat-ttp-kb%2Fgreen_seen_v1_v2.json">
<i class="fa fa-map-signs"></i> Download ATT&CK Workbench Collection</a>
<a class="btn btn-primary" target="_blank" href="..\modified_work_bench_file.json" download="modified_work_bench_file.json">
<i class="fa fa-download"></i> Download ATT&CK Workbench Collection (6.2mb)</a>

<a class="btn btn-primary" target="_blank" href="..\green_seen_v1_v2.xlsx" download="green_seen_v1_v2.xlsx">
<i class="fa fa-download"></i> Download EXCEL (18kb)</a>
<a class="btn btn-primary" target="_blank" href="..\hybrid_att&ck_matrix.xlsx" download="hybrid_att&ck_matrix.xlsx">
<i class="fa fa-download"></i> Download Hybrid ATT&CK Matrix - EXCEL (32kb)</a>

<a class="btn btn-primary" target="_blank" href="..\green_seen_v1_v2.json" download="green_seen_v1_v2.json">
<i class="fa fa-download"></i> Download JSON (153kb)</a>
<a class="btn btn-primary" target="_blank" href="..\defending-ot-with-att&ck-0.3.json" download="defending-ot-with-att&ck-0.3.json">
<i class="fa fa-download"></i> Download JSON Threat Collection (8.875mb)</a>
</p>

Building the Threat Collection
Expand Down
Loading

0 comments on commit 954dc9e

Please sign in to comment.