Compliance Node Overview
MITRE ATT&CK T1613 (Container and Resource Discovery) is an Enterprise Discovery technique. Adversaries may attempt to discover containers and other resources that are available within a containers environment. Other resources may include images, deployments, pods, nodes, and other information such as the status of a cluster. These resources can be viewed within web applications such as the Kubernetes dashboard or can be queried via the Docker and Kubernetes APIs. Affected platforms: Containers. MITRE-documented mitigations include M1030 Network Segmentation, M1035 Limit Access to Resource Over Network, M1018 User Account Management. The Center for Threat-Informed Defense maps this technique to NIST SP 800-53 Rev 5 controls AC-02, AC-03, AC-06, AC-17, CM-06, CM-07, IA-02, SC-07.
Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:
Primary source: https://attack.mitre.org/techniques/T1613/
SHA-256 integrity: 1acb79ed09d4bbc54f84475c6064cd2049933f1e0d63e85dc7f308128d96621a
Primary Citations — 7 traced to source
- MITRE ATT&CK Technique T1613: Container and Resource Discovery (https://attack.mitre.org/techniques/T1613/)
- MITRE ATT&CK Tactic TA0007: Discovery (https://attack.mitre.org/tactics/TA0007/)
+ 5 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access