Compliance Node Overview
MITRE ATT&CK ICS T1691.002 (Reporting Message) is an ICS Inhibit Response Function technique. Adversaries may block or prevent a reporting message from reaching its intended target. In control systems, reporting messages contain telemetry data (e.g., I/O values) pertaining to the current state of equipment and the industrial process. By blocking these reporting messages, an adversary can potentially hide their actions from an operator. Blocking reporting messages in control systems that manage physical processes may contribute to system impact, causing inhibition of a response function. A control system may not be able to respond in a proper or timely manner to an event, such as a dangerous fault, if its corresponding reporting message is blocked. Affected platforms: see ATT&CK ICS. Sub-technique of ATT&CK T1691. ATT&CK-mapped mitigations: M0810 Out-of-Band Communications Channel, M0807 Network Allowlists, M0814 Static Network Configuration.
Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:
Primary source: https://attack.mitre.org/techniques/T1691/002/
SHA-256 integrity: 8f2090c28e8c76b8676a3120aed1aa562228a36ba4c66af8ec84ce3abfe1b411
Primary Citations — 9 traced to source
- MITRE ATT&CK ICS Technique T1691.002: Reporting Message (https://attack.mitre.org/techniques/T1691/002/)
- MITRE ATT&CK ICS Tactic TA0107: Inhibit Response Function (https://attack.mitre.org/tactics/TA0107/)
+ 7 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access
⚠ Important: Human Verification Required
Bidda compliance nodes are reference intelligence, not legal advice. Every node must be reviewed by a qualified compliance professional or legal counsel before implementation in any enterprise workflow, regulated system, or compliance programme. See bidda.com/disclaimer for full terms.