Compliance Node Overview
MITRE ATT&CK T0893 (Data from Local System) is an ATT&CK for ICS Collection technique. Adversaries may target and collect data from local system sources, such as file systems, configuration files, or local databases. This can include sensitive data such as specifications, schematics, or diagrams of control system layouts, devices, and processes. Adversaries may do this using Command-Line Interface or Scripting techniques to interact with the file system to gather information. Adversaries may also use Automated Collection on the local system. Affected asset classes: None. MITRE-documented mitigations include M0941 Encrypt Sensitive Information, M0803 Data Loss Prevention, M0922 Restrict File and Directory Permissions, M0917 User Training. Operational-technology controls map to NIST SP 800-82 Rev 3 and the IEC/ISA 62443 series.
Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:
Primary source: https://attack.mitre.org/techniques/T0893/
SHA-256 integrity: 6e5817d05424d5c5a165e0eb8fd079222ab9e1b6e1cd6f6006e0af090aaa695a
Primary Citations — 7 traced to source
- MITRE ATT&CK for ICS Technique T0893: Data from Local System (https://attack.mitre.org/techniques/T0893/)
- MITRE ATT&CK ICS Tactic TA0100: Collection (https://attack.mitre.org/tactics/TA0100/)
+ 5 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access
⚠ Important: Human Verification Required
Bidda compliance nodes are reference intelligence, not legal advice. Every node must be reviewed by a qualified compliance professional or legal counsel before implementation in any enterprise workflow, regulated system, or compliance programme. See bidda.com/disclaimer for full terms.