Compliance Node Overview
MITRE ATT&CK T0822 (External Remote Services) is an ATT&CK for ICS Initial Access technique. Adversaries may leverage external remote services as a point of initial access into your network. These services allow users to connect to internal network resources from external locations. Examples are VPNs, Citrix, and other access mechanisms. Remote service gateways often manage connections and credential authentication for these services. External remote services allow administration of a control system from outside the system. Affected asset classes: None. MITRE-documented mitigations include M0930 Network Segmentation, M0936 Account Use Policies, M0935 Limit Access to Resource Over Network, M0927 Password Policies, M0918 User Account Management, M0942 Disable or Remove Feature or Program. Operational-technology controls map to NIST SP 800-82 Rev 3 and the IEC/ISA 62443 series.
Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:
Primary source: https://attack.mitre.org/techniques/T0822/
SHA-256 integrity: 00d8076567c6f886c12c6b66e4aa17219025407b10ee2d06f7fef4516f7758bf
Primary Citations — 7 traced to source
- MITRE ATT&CK for ICS Technique T0822: External Remote Services (https://attack.mitre.org/techniques/T0822/)
- MITRE ATT&CK ICS Tactic TA0108: Initial Access (https://attack.mitre.org/tactics/TA0108/)
+ 5 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access
⚠ Important: Human Verification Required
Bidda compliance nodes are reference intelligence, not legal advice. Every node must be reviewed by a qualified compliance professional or legal counsel before implementation in any enterprise workflow, regulated system, or compliance programme. See bidda.com/disclaimer for full terms.