Resources

Embedded systems threat matrix
The MITRE-developed Embedded Systems Threat Matrix (ESTM) is a purpose-built framework to address embedded system vulnerabilities.
Continue reading…

Pivot Overview
MITRE developed the PIVOT concept to connect multiple threat matrices, identify critical PIVOT points (e.g., gateway components), and address gaps in SoS cyber assessments, enabling better detection of adversary lateral movements across technology domains (i.e., IT to OT).
Continue reading…

ESTM Matrix
While drawing inspiration from the MITRE ATT&CK framework, the ESTM includes behaviors not yet widely observed against real systems, including known exploitable weaknesses, proofs-of-concept, and theoretical techniques.