Thriving Defense

Home

❯

principles

Folder: principles

10 items under this folder.

  • Apr 11, 2026

    comprehensively detect the middle of the attack

    • author/Jordan_Anderson
    • type/stub
  • Mar 27, 2026

    MITRE ATT&CK is not flat

    • author/Jordan_Anderson
    • type/article
    • theme/coverage
  • Mar 19, 2026

    attackers are avoiding EDR

    • author/Jordan_Anderson
    • type/stub
  • Mar 19, 2026

    prove coverage with validation tests

    • author/Jordan_Anderson
    • type/stub
    • theme/validation
  • Mar 18, 2026

    detection libraries must be repeatedly validated

    • author/Jordan_Anderson
    • type/article
    • theme/validation
  • Mar 10, 2026

    MITRE ATT&CK® is not designed for detection

    • author/Jordan_Anderson
    • type/stub
  • Mar 07, 2026

    false positives and false negatives occur on a continuum

    • author/Jordan_Anderson
    • type/stub
  • Mar 07, 2026

    detections based on threat intelligence are always opportunistic

    • author/Jordan_Anderson
    • type/stub
  • Mar 07, 2026

    attackers abuse legitimate capabilities

    • author/Jordan_Anderson
    • type/stub
  • Mar 07, 2026

    some techniques should only be detected opportunistically

    • author/Jordan_Anderson
    • theme/coverage
    • type/article

Created with Quartz v4.5.2 © 2026

  • GitHub