CyberHappenings logo

Track cybersecurity events as they unfold. Sourced timelines. Filter, sort, and browse. Fast, privacy‑respecting. No invasive ads, no tracking.

2025 MITRE ATT&CK Evaluations Highlight Scattered Spider and Mustang Panda Scenarios

First reported
Last updated
1 unique sources, 1 articles

Summary

Hide ▲

MITRE has released the 2025 ATT&CK Evaluations for enterprise cybersecurity solutions, testing 11 vendors against attack scenarios inspired by Scattered Spider and Mustang Panda. The evaluations introduced new focus areas, including cloud infrastructure attacks and adversary reconnaissance detection. MITRE emphasized the importance of protection and high-fidelity alerts to reduce alert fatigue. The results are available on MITRE's website, with vendors highlighting their performance without outright claims of victory.

Timeline

  1. 11.12.2025 15:50 1 articles · 23h ago

    2025 MITRE ATT&CK Evaluations Released with New Focus Areas

    MITRE has published the results of the 2025 ATT&CK Evaluations, testing 11 vendors against scenarios inspired by Scattered Spider and Mustang Panda. The evaluations introduced new focus areas, including cloud infrastructure attacks and adversary reconnaissance detection. MITRE emphasized the importance of protection and high-fidelity alerts to reduce alert fatigue. The results are available on MITRE's website, with vendors highlighting their performance without outright claims of victory.

    Show sources

Information Snippets

  • Eleven companies participated in the 2025 ATT&CK Evaluations: Acronis, AhnLab, CrowdStrike, Cyberani, Cybereason, Cynet, ESET, Sophos, Trend Micro, WatchGuard, and WithSecure.

    First reported: 11.12.2025 15:50
    1 source, 1 article
    Show sources
  • The evaluations focused on two scenarios: one inspired by Scattered Spider and another by Mustang Panda.

    First reported: 11.12.2025 15:50
    1 source, 1 article
    Show sources
  • The Scattered Spider scenario marked the first time MITRE tested cybersecurity products against attacks involving cloud infrastructure.

    First reported: 11.12.2025 15:50
    1 source, 1 article
    Show sources
  • The evaluations introduced a new focus on detecting adversary reconnaissance activities.

    First reported: 11.12.2025 15:50
    1 source, 1 article
    Show sources
  • MITRE enhanced the evaluation framework to prioritize protection and high-fidelity alerts.

    First reported: 11.12.2025 15:50
    1 source, 1 article
    Show sources
  • Several vendors highlighted their 100% detection and protection rates in specific categories, though MITRE noted that the evaluations do not rank vendors.

    First reported: 11.12.2025 15:50
    1 source, 1 article
    Show sources
  • Major companies like Microsoft, Palo Alto Networks, and SentinelOne withdrew from the evaluations this year due to resource constraints.

    First reported: 11.12.2025 15:50
    1 source, 1 article
    Show sources