| Version | Start Date | End Date | Data | Changelogs |
|---|---|---|---|---|
| ATT&CK v15 | April 23, 2024 | October 30, 2024 | v15.0 on MITRE/CTI v15.1 on MITRE/CTI |
v14.1 - v15.0 Details (JSON) v15.0 - v15.1 Details (JSON) |
The April 2024 (v15) ATT&CK release updates Techniques, Groups, Campaigns and Software for Enterprise, Mobile, and ICS.
The biggest changes in ATT&CK v15 are a shift in language (from CAR pseudocode to real-world query languages) for analytics in Enterprise detections, detection notes and analytics added to Enterprise Execution techniques, improved defensive recommendations for Cloud techniques, and the addition of activity from a number of cyber-criminal and underreported threat groups. An accompanying blog post describes these changes as well as additional improvements across ATT&CK's various domains and platforms.
This release also includes a human-readable detailed changelog showing more specifically what changed in updated ATT&CK objects, and a machine-readable JSON changelog, whose format is described in ATT&CK's Github.
This version of ATT&CK contains 794 Pieces of Software, 152 Groups, and 30 Campaigns. Broken out by domain: