Umbra Wiki defense defense/D3-TBI
Back to wiki

D3-TBI — TPM Boot Integrity

provenance: imported

D3-TBI: TPM Boot Integrity

MITRE D3FEND countermeasure

What it does

Assuring the integrity of a platform by demonstrating that the boot process starts from a trusted combination of hardware and software and continues until the operating system has fully booted and applications are running. Sometimes called Static Root of Trust Measurement (STRM).

Attacks this counters

No ATT&CK technique in this corpus maps to this countermeasure. D3FEND may map it to techniques outside the Enterprise matrix, or to ones MITRE has since revoked — absence here is about this corpus, not about the countermeasure.

Source