What do Where's Waldo, Lord of the Rings, and an axolotl have to do with cyber deception? Come find out at our Black Hat USA session: If the Adversary Lives Off Your Land, So Should You We'll show how defenders can turn the tables on the adversary by turning their own environments into high-fidelity deceptions using existing assets, open-source tools, and AI to detect adversaries earlier, influence their behavior, and raise the cost of malicious operations. 📅 Thursday, August 6 🕝 2:35–3:15 PM 📍 Mandalay Bay H (Level 2) Hope to see you there!
MITRE Engage
Computer and Network Security
A framework for discussing and planning adversary engagement, deception, and denial activities
About us
MITRE Engage is a framework for discussing and planning adversary engagement, deception, and denial activities. Engage is informed by adversary behavior observed in the real world and is intended to drive strategic cyber outcomes. Engage was created to help the private sector, government, and vendor communities to plan and execute the use of adversary engagement strategies and technologies. A beta version of Engage was released in August 2021. We are currently working to incorporate community feedback to update and improve the framework. We plan to MITRE Engage v1 later this year. Visit MITRE Engage here: https://engage.mitre.org/
- Website
-
https://engage.mitre.org/
External link for MITRE Engage
- Industry
- Computer and Network Security
- Company size
- 2-10 employees
- Founded
- 2020
Updates
-
Today we're celebrating an exciting milestone for the global MITRE Engage community. Congratulations to NEC Corporation and the Cyber Defense Institute, Inc. on becoming the first commercial organizations in the world to launch MITRE Engage in a Box training, bringing the program to Japan. (Check out the full press release in the comments!) As organizations around the world continue to adopt threat-informed defense, MITRE Engage extends that mindset by helping defenders think beyond detection and response to strategically influence adversary behavior. This training equips participants with practical skills for planning, implementing, and evaluating adversary engagement and deception operations through interactive tabletop exercises and hands-on labs in a safe virtual environment. NEC and the Cyber Defense Institute have combined the MITRE Engage curriculum with their deep operational expertise to create a training experience tailored for Japan's cybersecurity community, including government organizations and critical infrastructure operators. This launch represents an important step in growing the global MITRE Engage community and expanding access to practical education on adversary engagement. Congratulations to the teams at NEC and the Cyber Defense Institute on this achievement, we're excited to see the impact this program will have across Japan. #MITREEngage #CyberSecurity #AdversaryEngagement #Deception #CyberDefense #ThreatIntelligence #ThreatInformedDefense MITRE
-
Attending AFCEA International's #technetcyber? Stop by the MITRE booth (#2224) and connect with the experts advancing threat-informed defense across government and industry. Engage and Maretta Morovitz is excited to be hosting an "Ask the Expert..." session on Thinking Differently About Active Internal Countermeasures with MITRE Engage™ tomorrow from 9-11am, where we'll discuss how organizations can use adversary engagement and threat-informed approaches to improve defensive visibility, shape adversary behavior, and create more resilient cyber operations. In addition to the MITRE Engage session, attendees will have opportunities throughout the event to connect with experts including Mark Perry from MITRE Caldera, Kevin D. Fairbanks, PhD, Dr Michael Smith from D3FEND, Steve Luke Chief Engineer for MITRE's Cyber Operations Division, Leslie Anderson from the Center for Threat-Informed Defense, Ben Deering from MITRE's Cyber-Physical Systems Division, Emma Holt from D3FEND for OT, and Lex Crumpton from MITRE ATT&CK. #MITREEngage #ThreatInformedDefense #CyberDeception #AdversaryEngagement #CyberSecurity #MITREATTACK #D3FEND #CALDERA #MITRE
-
-
Going to TechNet Cyber? Deception and MITRE Engage will be featured topics at the MITRE booth (#2224) so make sure you stop by and say hi!
Excited to be part of team MITRE at TechNet Cyber in June! Will you be there? Stop by Booth #2224 and come say hi! MITRE Engage #cyber #defense
-
Last year, for Cyber Deception Day we explored Living Off the Land Engagement (LOTLE) as a simple but powerful idea: use what already exists in your environment to detect and influence adversaries. This year, we took the next step. What does it actually look like to move this from a creative technique to something repeatable? In our latest demo, we walk through how to: • Start with a real environment • Map attacker behavior using ATT&CK • Translate that into engagement opportunities • Deploy LOTLE alongside open source tools, using AI to make it all blend in Not new tools. New ways of using what’s already there. Blog + demo below 👇 (Link in comments)
-
Deception is a continuous capability—shaping adversary behavior, creating uncertainty, and influencing outcomes before detection even begins. So this year, we’re not keeping Cyber Deception Day to just one day. Stay tuned for another blog tomorrow where we will be releasing a special video demo showcasing a recent research project where we connected multiple open source tools including MITRE ATT&CK, MITRE Caldera, and Thinkst Canary to demonstrate how Living Off the Land Deception can be used in practice, leveraging native assets and artifacts to create high-fidelity, low-noise opportunities to detect, understand, and influence adversaries. More to come. #CyberDeception #MITREEngage #ThreatInformedDefense #CyberSecurity
-
On Cyber Deception Day, we’re exploring a shift in mindset: As adversaries adopt AI for use in malicious operations, we need to think differently about deception. AI agents don’t “understand” environments the way humans do. They interpret signals, context, and data probabilistically, and that creates opportunity for us! 👉 What if we could: - Expand their scope with false pathways and noise - Increase their costs through token and compute exhaustion - Slow them down with dead ends and rework - Degrade their quality with subtle, compounding errors This isn’t about breaking AI. It’s about manipulating the environment it depends on. From context poisoning and RAG manipulation to logic traps and resource exhaustion, these techniques introduce controlled chaos, forcing adversaries into unfavorable tradeoffs. The result? More time. More uncertainty. More mistakes. And sometimes… a human forced back into the loop. We may not stop the “wild things” of agentic AI from arriving. But we can absolutely shape the world they operate in. Let the wild rumpus start and check out our newest blog post on the topic (link in the comments!) from Alice Koeninger Shane Steiger, Esq., CISSP and Maretta Morovitz #CyberDeception #AI #CyberSecurity #AdversaryEngagement #MITREEngage #ThreatInformedDefense
-
Shoutout to one of our own, Maretta Morovitz gave her TEDx talk on finding creativity and innovation through her work in #deception and dance. Cyber deception is an area of security where creativity isn’t just helpful—it’s essential. The most effective deception strategies are born from diverse ways of thinking, and those often come from experiences outside traditional tech and cyber paths. Whether it’s storytelling, psychology, game design, improvisation, or even hobbies that sharpen observation and pattern-breaking, our unique perspectives shape how we outthink and outmaneuver adversaries. When we bring our varied backgrounds, passions, and lived experiences into the mission, we unlock new deceptive techniques, new angles of defense, and ultimately push the field forward in ways that purely technical approaches never could.
🚨 My TEDx talk is officially LIVE! 🚨 ✨ What Ballroom Dancing Taught Me About Leading Cybersecurity Teams When I first stepped onto a ballroom floor, I had no idea it would reshape the way I show up as an engineer. In dance, leaders create space—and followers fill that space. That simple idea changed how I show up at work. Instead of trying to choreograph every move for my team, I started focusing on creating room for their ideas, their energy, and their style. My TEDx talk shares how I learned to connect my boxes: 🟦 Cyber deception engineer at MITRE 🟪 Ballroom dance studio owner at Ignis Arts Ballroom Studio Two worlds that seem nothing alike… until you start looking for the connective tissue between them. From abstraction in computer science helping me run a business…to structured social interactions on the dance floor helping engineers communicate better…to the unexpected lessons that live at the intersection of art and STEM…This talk is for anyone who has more than one passion—and wonders whether it’s “okay” to bring them together. Spoiler: It’s not just okay. It’s powerful. 🎥 Check out the link in the comments below. 👉 After you watch, drop a comment on YouTube and let me know which “box” you’re dancing between. Your perspectives might inspire someone else to step beyond their own. MITRE Engage TEDx Walden Pond #TEDx #Leadership #Innovation #Creativity #WomenInTech #CyberSecurity #EngineeringLeadership #BallroomDance #Interdisciplinary #ThoughtLeadership
-
-
🎄 ’Tis the Season to Outsmart Attackers—Home Alone Style! 🏠💻 Defending a network takes strategy, creativity — and a touch of mischief. Join Maretta Morovitz from MITRE Engage and Acalvio Technologies as we explore how deception-based defense can outsmart even the most persistent attackers. 🗓 Date: November 12 ⏰ Time: 10 AM PST | 1 PM EST 🔗 Register here: https://lnkd.in/gUeJfPpd This season, make your defenses as clever as Kevin’s.
🎄 ’Tis the Season to Outsmart Attackers—Home Alone Style! 🏠💻 https://lnkd.in/gUeJfPpd When it comes to defending what matters most, few did it better than Kevin McCallister. Like any great defender, he knew his environment, anticipated his adversaries, and used every tool at his disposal. That’s the same mindset today’s cyber defenders need. Join Acalvio and MITRE Engage for an engaging webinar: 👉 Outsmarting Attackers—Home Alone Style: Lessons in Cyber Deception We’ll explore how crown jewel analysis, network profiling, and Living Off the Land Engagement (LOTLE) techniques can take your deception program from tactical to transformational. 🗓 Date: November 12 ⏰ Time: 10 AM PST [ 1 PM EST ] 🎙 Speaker: Maretta Morovitz 🔗 Register here: https://lnkd.in/gUeJfPpd Bring your holiday spirit—and your curiosity. Learn how to make your network every bit as unwelcoming to attackers as Kevin made his home to the Wet Bandits. #CyberSecurity #DeceptionTechnology #MITREEngage #Acalvio #CyberDefense #RansomwareProtection #ThreatDetection #CyberResilience
-