TTPs stands for Tactics, Techniques, and Procedures. In cybersecurity, TTPs describe the behavior of threat actors. Tactics are high-level strategic goals (e.g., Initial Access, Execution). Techniques are specific methods used to achieve a tactic (e.g., spearphishing attachment for initial access, PowerShell for execution). Procedures are the specific implementations of techniques (e.g., using a specific PowerShell command to download and execute malware). Understanding TTPs helps security teams anticipate and defend against attacks by identifying patterns in attacker behavior.
This tech insight summary was produced by Sumble. We provide rich account intelligence data.
On our web app, we make a lot of our data available for browsing at no cost.
We have two paid products, Sumble Signals and Sumble Enrich, that integrate with your internal sales systems.