Compliance Node Overview
MITRE ATT&CK T0855 (Unauthorized Command Message) is an ATT&CK for ICS Impair Process Control technique. Adversaries may send unauthorized command messages to instruct control system assets to perform actions outside of their intended functionality, or without the logical preconditions to trigger their expected function. Command messages are used in ICS networks to give direct instructions to control systems devices. If an adversary can send an unauthorized command message to a control system, then it can instruct the control systems device to perform an action outside the normal bounds of the device's actions. Affected asset classes: None. MITRE-documented mitigations include M0818 Validate Program Inputs, M0930 Network Segmentation, M0937 Filter Network Traffic, M0802 Communication Authenticity, M0807 Network Allowlists, M0813 Software Process and Device Authentication. Operational-technology controls map to NIST SP 800-82 Rev 3 and the IEC/ISA 62443 series.
Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:
Primary source: https://attack.mitre.org/versions/v16/techniques/T0855/
SHA-256 integrity: 0edf3846314f3a87bfb394d2b07a23274aa982ff8599a612f5df26b2e57c78b1
Primary Citations — 7 traced to source
- MITRE ATT&CK for ICS Technique T0855: Unauthorized Command Message (https://attack.mitre.org/versions/v16/techniques/T0855/)
- MITRE ATT&CK ICS Tactic TA0106: Impair Process Control (https://attack.mitre.org/tactics/TA0106/)
+ 5 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access
⚠ Important: Human Verification Required
Bidda compliance nodes are reference intelligence, not legal advice. Every node must be reviewed by a qualified compliance professional or legal counsel before implementation in any enterprise workflow, regulated system, or compliance programme. See bidda.com/disclaimer for full terms.