Skip to content

Mitre v19 fixes#479

Merged
pyth0n1c merged 9 commits intomainfrom
mitre_19_fixes
Apr 28, 2026
Merged

Mitre v19 fixes#479
pyth0n1c merged 9 commits intomainfrom
mitre_19_fixes

Conversation

@ljstella
Copy link
Copy Markdown
Contributor

@ljstella ljstella commented Apr 28, 2026

Also migrates to STIX2.1 version of ATT&CK.

Corresponding splunk/security_content PR here: splunk/security_content#4036

The linked PR has the 176 updated detections with their new v19 mappings.

@ljstella
Copy link
Copy Markdown
Contributor Author

TEMPORARILY switching the ref for splunk/security_content to run the smoketest_escu job against the prepped branch with changes.

@ljstella
Copy link
Copy Markdown
Contributor Author

16/16 successful checks when testing against the prepared content branch

Screenshot 2026-04-28 at 2 48 51 PM

cc24e0e

pyth0n1c and others added 2 commits April 28, 2026 14:55
to check out missing repos when
--enrichments argument is passed
to contentctl build
in mitre attack nav output

Co-authored-by: Copilot <copilot@github.com>
@pyth0n1c
Copy link
Copy Markdown
Contributor

pyth0n1c commented Apr 28, 2026

Made a small update to the guidance that is printed out when --enrichments is used here:
ac5851b

Also, I think we likely need to bump this version to "19" here:
71424b4
Note that it is presently at "17", which was/is likely wrong.

Having generated the coverage.json and opening it at https://mitre-attack.github.io/attack-navigator/, it looks correct. See the screenshot below, with inclusion of "Stealth" and "Defense Impairment" columns:
image

Copy link
Copy Markdown
Contributor

@pyth0n1c pyth0n1c left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I have made some other small tweaks to this as noted in the comments, but these changes look good to me.
I have also tested them against the modified content branch in security_content and they all look good as well!
I believe we are good to merge and should cut a new release.

@pyth0n1c pyth0n1c merged commit 3d19600 into main Apr 28, 2026
10 of 16 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants