Bidda Sovereign Intelligence · 10,085 Verified Nodes · 39 Sovereign Pillars

MITRE ATT&CK ICS T1693: Modify Firmware (ICS Tactic TA0110 - Persistence)

MITRE ATT&CK ICS T1693 (Modify Firmware) is an ICS Persistence, Inhibit Response Function, Impair Process Control technique. Firmware is low-level…

What MITRE ATT&CK ICS T1693: Modify Firmware (ICS Tactic TA0110 - Persistence) requires

MITRE ATT&CK ICS T1693 (Modify Firmware) is an ICS Persistence, Inhibit Response Function, Impair Process Control technique. Firmware is low-level software embedded in hardware that enables systems and devices to function properly and is commonly found in ICS environments. Adversaries may modify firmware on a system or device by installing malicious or vulnerable versions that enable them to achieve objectives such as Persistence, Impair Process Control, and Inhibit Response Function. Adversaries may modify system and device firmware by using the built-in firmware update functionality which may support local or remote installation. The malicious or vulnerable firmware may be delivered via Replication Through Removable Media, Supply Chain Compromise, or Remote Services. Once installed, the malicious or vulnerable firmware could be used to provide Rootkit and Hooking functionality, Exploitation for Privilege Escal... Affected platforms: see ATT&CK ICS. ATT&CK-mapped mitigations: M0802 Communication Authenticity, M0930 Network Segmentation, M0945 Code Signing, M0807 Network Allowlists, M0808 Encrypt Network Traffic, M0947 Audit, M0804 Human User Authentication, M0813 Software Process and Device Authentication, M0946 Boot Integrity, M0941 Encrypt Sensitive Information, M0801 Access Management, M0937 Filter Network Traffic.

Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:

Primary source: https://attack.mitre.org/techniques/T1693/

SHA-256 integrity: 06f75a4b9c78e33b85cee933cee66ff55dbe7d09615552678251e5faeada76a7

Primary Citations — 18 traced to source

  • MITRE ATT&CK ICS Technique T1693: Modify Firmware (https://attack.mitre.org/techniques/T1693/)
  • MITRE ATT&CK ICS Tactic TA0110: Persistence (https://attack.mitre.org/tactics/TA0110/)

+ 16 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.

Access

⚠ Important: Human Verification Required

Bidda compliance nodes are reference intelligence, not legal advice. Every node must be reviewed by a qualified compliance professional or legal counsel before implementation in any enterprise workflow, regulated system, or compliance programme. See bidda.com/disclaimer for full terms.