In collaboration with Center Participants, the Center for Threat-Informed Defense (Center) maintains a library of adversary emulation plans to allow organizations to evaluate their defensive capabilities against real-world threats. Emulation plans are an essential component in testing current defenses for organizations that are looking to prioritize their defenses around actual adversary behavior. The library contains two types of adversary emulation plans: full emulation and micro emulation. Full emulation plans are a comprehensive approach to emulating a specific adversary, e.g. FIN6, from initial access to exfiltration. These plans emulate a wide range of ATT&CK tactics & techniques and are designed to emulate a real breach from the designated adversary. Micro emulation plans are a focused approach to emulating compound behaviors seen across multiple adversaries, e.g. webshells.
Common questions about Adversary Emulation Library including features, pricing, alternatives, and user reviews.
Adversary Emulation Library is A library of adversary emulation plans to evaluate defensive capabilities against real-world threats. It is a Security Operations solution designed to help security teams with MITRE Attack.
Adversary Emulation Library is a free Security Operations tool. This makes it accessible for organizations of all sizes, from startups to enterprises. Visit https://github.com/center-for-threat-informed-defense/adversary_emulation_library/ for download and installation instructions.
Popular alternatives to Adversary Emulation Library include:
Compare all Adversary Emulation Library alternatives at https://cybersectools.com/alternatives/adversary-emulation-library
Adversary Emulation Library is for security teams and organizations that need MITRE Attack. It's particularly suitable for small to medium-sized teams looking for cost-effective solutions. Other Security Operations tools can be found at https://cybersectools.com/categories/security-operations
Head-to-head feature, pricing, and rating breakdowns.
Human-led adversary emulation service testing detection & response capabilities
Autonomous offensive security platform that finds, validates, and remediates attack paths.
MITRE Caldera™ is an automated adversary emulation platform built on the MITRE ATT&CK framework that supports red team operations and incident response activities through a modular C2 server and plugin architecture.
Platform for offensive security operations including ASM, VA, and DAST