Skip to content

AM MITRE ATT&CK Framework

  • today
  • access_time -
  • location_on408 B
  • blur_circularConference
Conference Abstract: Modern Additive Manufacturing (AM) environments lack consistent security standards and cybersecurity awareness. AM is a cyber-physical manufacturing method which increases gaps in security posture, as well as the impact of malicious cyber actors by extending their destructive reach from bits & bytes to physical destruction, putting life and property at risk.

The MITRE ATT&CK Framework Matrix has become the gold standard in evaluating an entity's current cyber-posture and identifying gaps that need to be addressed. The framework focuses on the tactics (attacker’s goal), the techniques (methods employed) and procedures (specific implementation or malware). As the AM industry trends towards Industry 4.0, the number of connected cyber-physical systems is skyrocketing. The current MITRE ATT&CK Framework Matrix is not entirely suitable for these operational technologies (OTs), particularly AM. During a cyber attack, malicious AM commands issued can cause catastrophic equipment and environmental damage, and severe injuries to the operator. A framework developed specifically for AM technologies will aim to prevent these attacks.

Some key benefits of an AM specific framework include:
- Increased cybersecurity visibility and awareness
- Technology solutions driven to address gaps
- Visualization of the security posture in AM environments
- Use as a template to create other Operational Technology (OT) specific frameworks

The proposed AM framework will result in a more integrated defense approach targeted specifically for the AM environment. It will contribute to assured compliance assessment solutions that include vulnerability assessment and scanning capability.