Umbra Wiki defense defense/D3-NTPM
Back to wiki

D3-NTPM — Network Traffic Policy Mapping

provenance: imported · ATT&CK: T1134 T1134.005 T1222 T1222.001 T1222.002 T1484 T1484.001 T1484.002 T1548 T1548.001 T1548.005 T1552 T1552.006 T1556 T1556.009 T1615

D3-NTPM: Network Traffic Policy Mapping

MITRE D3FEND countermeasure

What it does

Network traffic policy mapping identifies and models the allowed pathways of data at the network, transport, and/or application levels.

Attacks this counters

The chain in this corpus runs CVE → CWE → CAPEC → ATT&CK technique, which ends at what an adversary does. This is the hop after: what stops it.

Source