Adversary techniques are at the core of understanding how adversaries operate, what Zscaler MDR detects, and how we investigate those events. Zscaler MDR brings together public information about these techniques with context specific to your organization to be your primary source of intelligence.
Information about each technique is accessible from the MITRE ATT&CK® coverage matrix or anywhere else a technique is listed.
Jump to a technique
Press ⌘-K or click the search bar, and then type a technique name or identifier.
Select the desired technique from the list.
Press Enter.
Explore techniques from the MITRE ATT&CK matrix
Click Analytics, and then select Attack Techniques.
Click the name of the technique you want to view.
The top left contains information from public sources, MITRE ATT&CK, and Zscaler MDR (if the technique is a Zscaler MDR technique awaiting inclusion in MITRE ATT&CK).
The Prevalence section highlights techniques that are frequently used across all of the environments we monitor.
Recent Threats and Recent Events list confirmed threats and potentially threatening events that have been observed using this technique in your environment.
The Zscaler MDR Coverage section lists detection analytics (detectors) that Zscaler MDR uses to identify behavior associated with this technique.
