Compliance Node Overview
MITRE ATT&CK T0821 (Modify Controller Tasking) is an ATT&CK for ICS Execution technique. Adversaries may modify the tasking of a controller to allow for the execution of their own programs. This can allow an adversary to manipulate the execution flow and behavior of a controller. According to 61131-3, the association of a Task with a Program Organization Unit (POU) defines a task association. An adversary may modify these associations or create new ones to manipulate the execution flow of a controller. Affected asset classes: None. MITRE-documented mitigations include M0800 Authorization Enforcement, M0804 Human User Authentication, M0947 Audit, M0945 Code Signing. Operational-technology controls map to NIST SP 800-82 Rev 3 and the IEC/ISA 62443 series.
Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:
Primary source: https://attack.mitre.org/techniques/T0821/
SHA-256 integrity: 9847823f188d6d93e05ef4fd93b807144ba0b0e18437b2c0c53562cdbcf93095
Primary Citations — 7 traced to source
- MITRE ATT&CK for ICS Technique T0821: Modify Controller Tasking (https://attack.mitre.org/techniques/T0821/)
- MITRE ATT&CK ICS Tactic TA0104: Execution (https://attack.mitre.org/tactics/TA0104/)
+ 5 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access
⚠ Important: Human Verification Required
Bidda compliance nodes are reference intelligence, not legal advice. Every node must be reviewed by a qualified compliance professional or legal counsel before implementation in any enterprise workflow, regulated system, or compliance programme. See bidda.com/disclaimer for full terms.