Skip to content

MITRE ATT&CK

RedCloud maps every attack-path step to the MITRE ATT&CK framework — a shared, industry-standard language of adversary tactics and techniques. The MITRE ATT&CK screen presents this as a heatmap so you can see, at a glance, which tactics your environment is exposed to.

BenefitCapabilityBusiness value
Common languageTactic + technique IDs on every stepCommunicate risk in terms the whole industry uses
Coverage viewHeatmap across tacticsSpot the tactics where you’re most exposed
ReportingFramework mapping in reportsSatisfy stakeholders who track ATT&CK coverage

Each step in an attack path carries its MITRE tactic and technique (for example, an impersonation step maps to a Valid Accounts technique). The MITRE ATT&CK heatmap aggregates these across all paths and findings, shading each tactic by how much exposure it represents. Selecting a cell drills into the findings and paths behind it.

  1. Run a scan and open Attack Analysis → MITRE ATT&CK.
  2. Identify the hottest tactics (most exposure).
  3. Drill into a tactic to see the contributing findings and paths.
  4. Remediate, then re-scan to watch the heatmap cool.
  • Use the heatmap to drive coverage conversations with leadership and auditors.
  • Combine with Attack Path Analysis to turn a hot tactic into a concrete fix list.