Skip to content
Release: Australia · Updated: 2026-03-12 · Official documentation · View source

Manage Tools

Manage the tools information that you imported from the MITRE TAXII collections. Tools are legitimate software that are used by threat actors to perform attacks.

Before you begin

Role required: sn_sec_tisc.analyst

About this task

Tools enable you to know how and when threat actors use them for executing campaigns. Unlike malware, these tools or software packages are often found on a system and have legitimate purposes for power users, administrators, network administrators, or even normal users.

Procedure

  1. To view the MITRE ATT&CK Repository data, navigate to Workspaces > Threat Intelligence Security Center > Threat Intel Library > MITRE ATT&CK > Tools.

    You can view the listed tools.

  2. Click a tool to view all the associated information.

  3. Click New to manually create the MITRE ATT&CK tools.

  4. Fill in the fields appropriately.

    FieldDescription
    IDUnique ID for a course of action to prevent an attack.
    RevokedIndicates that the revoked objects are no longer considered valid by the object creator.
    NameEnter a descriptive name to identify the object.
    SourceSpecifies the threat source from which this object record is created.
    AliasesA list of other names to identify this object.
    Created Time In SourceSpecifies the time the object is created in the source.
    Modified Time In SourceSpecifies the time the object is modified in the source.
    DescriptionA description that provides more details and context about the object, potentially including its purpose and its key characteristics.
    ContributorsSpecifies the contributors.
    Insights
    NotesAny additional information related to the mitigation.
    Additional Information
    Additional ContextAdd any additional context for this object.
    CommentsAdd any comments for this object.
  5. Click Save.

  6. To view how these objects are related, click Relationships.

Parent Topic:MITRE-ATT&CK Repository