# MITRE ATT&CK
MITRE ATT&CK is a knowledge base and common vocabulary describing adversary tactics and techniques observed across enterprise, mobile, cloud, and industrial-control environments.
## Use
ATT&CK helps analysts map observed behavior to known technique classes, organize detection coverage, and compare incidents without requiring identical malware or actors.
## Boundary
A technique match is not actor attribution. Many actors use the same tools and methods, and a generic behavior may have legitimate explanations. Confidence depends on artifacts, sequence, infrastructure, and independent intelligence.
## Relationships
[[MITRE]] · [[DISARM Framework]] · [[Cyber Kill Chain]] · [[Threat Modeling]].