# CRO-026 - GAISSF-MITRE ATT&CK Mapping **Version:** 1.0 **Status:** Publication Candidate **Publisher:** ODA3 Institute **Publication date:** 29 June 2026 > This crosswalk records defensive relationships between GAISSF controls and MITRE ATT&CK Enterprise adversary behavior. It does not establish MITRE endorsement, certification, prevention, detection, or operating effectiveness. ## Source baseline - GAISSF-NOR-001 v1.0 and GAISSF-NOR-004 v1.0. - MITRE ATT&CK v19, released 28 April 2026. - Primary domain: Enterprise. Mobile and ICS are excluded. ## Scope All 59 GAISSF controls are mapped to materially relevant Enterprise tactics and a priority set of 100 techniques. The official ATT&CK dataset remains authoritative for the complete technique, sub-technique, procedure, group, software, campaign, mitigation and detection inventory. ## Enterprise tactics - `TA0043` Reconnaissance - `TA0042` Resource Development - `TA0001` Initial Access - `TA0002` Execution - `TA0003` Persistence - `TA0004` Privilege Escalation - `TA0005` Defense Evasion - `TA0006` Credential Access - `TA0007` Discovery - `TA0008` Lateral Movement - `TA0009` Collection - `TA0011` Command and Control - `TA0010` Exfiltration - `TA0040` Impact ## Reverse tactic coverage | Tactic | Coverage | Mapped GAISSF controls | |---|---|---| | TA0043 Reconnaissance | Substantially Addressed | D2-CTL-04, D3-CTL-05, D7-CTL-H01, D7-CTL-H02, D7-CTL-H04, D8-CTL-01, D8-CTL-02, D8-CTL-03, D8-CTL-04, D8-CTL-05 | | TA0042 Resource Development | Substantially Addressed | D4-CTL-01, D4-CTL-02, D4-CTL-03, D4-CTL-04, D4-CTL-05, D4-CTL-07, D6-CTL-06, D8-CTL-05 | | TA0001 Initial Access | Substantially Addressed | D1-CTL-01, D1-CTL-02, D1-CTL-03, D1-CTL-04, D1-CTL-05, D1-CTL-06, D1-CTL-07, D1-CTL-08, D1-CTL-09, D2-CTL-01, D2-CTL-03, D2-CTL-05, D3-CTL-01, D3-CTL-02, D3-CTL-03, D3-CTL-06, D3-CTL-07, D4-CTL-01, D4-CTL-02, D4-CTL-03, D4-CTL-04, D4-CTL-05, D4-CTL-06, D4-CTL-07, D6-CTL-03, D6-CTL-05, D6-CTL-06, D7-CTL-H01, D7-CTL-H05, D9-CTL-03, D9-CTL-04, D9-CTL-05 | | TA0002 Execution | Partially Addressed | D2-CTL-04, D2-CTL-05, D2-CTL-06, D3-CTL-04, D7-CTL-H02 | | TA0003 Persistence | Substantially Addressed | D1-CTL-01, D1-CTL-02, D1-CTL-03, D1-CTL-04, D1-CTL-05, D1-CTL-07, D1-CTL-08, D1-CTL-09, D6-CTL-01, D6-CTL-04 | | TA0004 Privilege Escalation | Partially Addressed | D7-CTL-H03 | | TA0005 Defense Evasion | Substantially Addressed | D2-CTL-01, D2-CTL-06, D3-CTL-02, D3-CTL-03, D3-CTL-04, D3-CTL-05, D3-CTL-07, D6-CTL-02, D9-CTL-06 | | TA0006 Credential Access | Partially Addressed | D7-CTL-H03 | | TA0007 Discovery | Partially Addressed | D4-CTL-06, D6-CTL-02 | | TA0008 Lateral Movement | Partially Addressed | D3-CTL-01, D3-CTL-06 | | TA0009 Collection | Partially Addressed | D2-CTL-03 | | TA0011 Command and Control | Not Addressed | | | TA0010 Exfiltration | Partially Addressed | D9-CTL-01, D9-CTL-02, D9-CTL-03, D9-CTL-04, D9-CTL-05, D9-CTL-06 | | TA0040 Impact | Substantially Addressed | D2-CTL-02, D5-CTL-01, D5-CTL-02, D5-CTL-03, D5-CTL-04, D5-CTL-05, D5-CTL-06, D6-CTL-07, D8-CTL-04, D9-CTL-01, D9-CTL-02, D9-CTL-07 | ## Limitations - ATT&CK describes adversary behavior and is not a prescriptive control or compliance framework. - A mapping does not prove prevention, detection, mitigation effectiveness, or test coverage. - The priority technique inventory is scoped to Enterprise techniques with direct relevance to GAISSF and does not replace the complete official ATT&CK dataset. - Sub-techniques and procedures require environment-specific analysis. - Mobile and ICS domains are excluded from this edition and require separate controlled profiles. - ATT&CK changes require source revalidation. ## Notably absent - No MITRE endorsement or certification. - No proof that mapped techniques are prevented or detected. - No universal technique-coverage percentage. - No substitution for telemetry validation, detection engineering, or adversary emulation. - No Mobile or ICS mapping in this edition. ## Mapping register | Record | GAISSF control | ATT&CK technique | Relationship | Confidence | |---|---|---|---|---| | CRO026-MAP-0001 | D1-CTL-01 Dataset Provenance & Poisoning Prevention | T1195 Supply Chain Compromise | S | Low | | CRO026-MAP-0002 | D1-CTL-01 Dataset Provenance & Poisoning Prevention | T1554 Compromise Host Software Binary | S | Low | | CRO026-MAP-0003 | D1-CTL-02 Model Extraction Resistance | T1195 Supply Chain Compromise | S | Low | | CRO026-MAP-0004 | D1-CTL-02 Model Extraction Resistance | T1554 Compromise Host Software Binary | S | Low | | CRO026-MAP-0005 | D1-CTL-03 Behavioral Drift Detection | T1195 Supply Chain Compromise | S | Low | | CRO026-MAP-0006 | D1-CTL-03 Behavioral Drift Detection | T1554 Compromise Host Software Binary | S | Low | | CRO026-MAP-0007 | D1-CTL-04 Federated Learning Poisoning Prevention | T1195 Supply Chain Compromise | S | Low | | CRO026-MAP-0008 | D1-CTL-04 Federated Learning Poisoning Prevention | T1554 Compromise Host Software Binary | S | Low | | CRO026-MAP-0009 | D1-CTL-05 Embedding Space Robustness | T1195 Supply Chain Compromise | S | Low | | CRO026-MAP-0010 | D1-CTL-05 Embedding Space Robustness | T1554 Compromise Host Software Binary | S | Low | | CRO026-MAP-0011 | D1-CTL-06 Post-Quantum Model Signing & Crypto Hardening | T1195 Supply Chain Compromise | P | Medium | | CRO026-MAP-0012 | D1-CTL-07 Lora/Adapter Integrity Verification | T1195 Supply Chain Compromise | S | Low | | CRO026-MAP-0013 | D1-CTL-07 Lora/Adapter Integrity Verification | T1554 Compromise Host Software Binary | S | Low | | CRO026-MAP-0014 | D1-CTL-08 Model Merge Attack Detection | T1195 Supply Chain Compromise | S | Low | | CRO026-MAP-0015 | D1-CTL-08 Model Merge Attack Detection | T1554 Compromise Host Software Binary | S | Low | | CRO026-MAP-0016 | D1-CTL-09 Quantization Backdoor Screening | T1195 Supply Chain Compromise | S | Low | | CRO026-MAP-0017 | D1-CTL-09 Quantization Backdoor Screening | T1554 Compromise Host Software Binary | S | Low | | CRO026-MAP-0018 | D2-CTL-01 Direct Prompt Injection Prevention | T1078 Valid Accounts | S | Low | | CRO026-MAP-0019 | D2-CTL-01 Direct Prompt Injection Prevention | T1218 System Binary Proxy Execution | S | Low | | CRO026-MAP-0020 | D2-CTL-02 Indirect Prompt Injection Prevention | T1485 Data Destruction | S | Low | | CRO026-MAP-0021 | D2-CTL-02 Indirect Prompt Injection Prevention | T1565 Data Manipulation | S | Low | | CRO026-MAP-0022 | D2-CTL-03 Jailbreak Resistance Testing | T1078 Valid Accounts | S | Low | | CRO026-MAP-0023 | D2-CTL-03 Jailbreak Resistance Testing | T1119 Automated Collection | S | Low | | CRO026-MAP-0024 | D2-CTL-04 Multi-Modal Injection Defense | T1595 Active Scanning | S | Low | | CRO026-MAP-0025 | D2-CTL-04 Multi-Modal Injection Defense | T1059 Command and Scripting Interpreter | S | Low | | CRO026-MAP-0026 | D2-CTL-05 Function Call/Tool Call Injection Prevention | T1078 Valid Accounts | S | Low | | CRO026-MAP-0027 | D2-CTL-05 Function Call/Tool Call Injection Prevention | T1203 Exploitation for Client Execution | S | Low | | CRO026-MAP-0028 | D2-CTL-06 Cross-Context Hijacking Mitigation | T1047 Windows Management Instrumentation | S | Low | | CRO026-MAP-0029 | D2-CTL-06 Cross-Context Hijacking Mitigation | T1218 System Binary Proxy Execution | S | Low | | CRO026-MAP-0030 | D3-CTL-01 Least Agency Enforcement | T1133 External Remote Services | P | Medium | | CRO026-MAP-0031 | D3-CTL-01 Least Agency Enforcement | T1021 Remote Services | P | Medium | | CRO026-MAP-0032 | D3-CTL-01 Least Agency Enforcement | T1210 Exploitation of Remote Services | P | Medium | | CRO026-MAP-0033 | D3-CTL-02 Inter-Agent Communication Security | T1218 System Binary Proxy Execution | S | Low | | CRO026-MAP-0034 | D3-CTL-02 Inter-Agent Communication Security | T1133 External Remote Services | S | Low | | CRO026-MAP-0035 | D3-CTL-03 Agentic Prompt Chaining Detection | T1218 System Binary Proxy Execution | S | Low | | CRO026-MAP-0036 | D3-CTL-03 Agentic Prompt Chaining Detection | T1133 External Remote Services | S | Low | | CRO026-MAP-0037 | D3-CTL-04 Embodied Ai Safety Controls | T1059 Command and Scripting Interpreter | S | Low | | CRO026-MAP-0038 | D3-CTL-04 Embodied Ai Safety Controls | T1553 Subvert Trust Controls | S | Low | | CRO026-MAP-0039 | D3-CTL-05 Multi-Agent Trust Chain Attestation | T1589 Gather Victim Identity Information | S | Low | | CRO026-MAP-0040 | D3-CTL-05 Multi-Agent Trust Chain Attestation | T1218 System Binary Proxy Execution | S | Low | | CRO026-MAP-0041 | D3-CTL-06 Persistent Memory Exfiltration Prevention | T1133 External Remote Services | P | Medium | | CRO026-MAP-0042 | D3-CTL-06 Persistent Memory Exfiltration Prevention | T1021 Remote Services | P | Medium | | CRO026-MAP-0043 | D3-CTL-06 Persistent Memory Exfiltration Prevention | T1210 Exploitation of Remote Services | P | Medium | | CRO026-MAP-0044 | D3-CTL-07 Secure Memory Lifecycle Management | T1218 System Binary Proxy Execution | S | Low | | CRO026-MAP-0045 | D3-CTL-07 Secure Memory Lifecycle Management | T1133 External Remote Services | S | Low | | CRO026-MAP-0046 | D4-CTL-01 Ai Bill Of Materials (Ai Bom) Maintenance | T1195 Supply Chain Compromise | S | Low | | CRO026-MAP-0047 | D4-CTL-01 Ai Bill Of Materials (Ai Bom) Maintenance | T1584 Compromise Infrastructure | S | Low | | CRO026-MAP-0048 | D4-CTL-02 Model File & Artifact Scanning | T1195 Supply Chain Compromise | S | Low | | CRO026-MAP-0049 | D4-CTL-02 Model File & Artifact Scanning | T1584 Compromise Infrastructure | S | Low | | CRO026-MAP-0050 | D4-CTL-03 Model Hub & Registry Vetting | T1195 Supply Chain Compromise | S | Low | | CRO026-MAP-0051 | D4-CTL-03 Model Hub & Registry Vetting | T1584 Compromise Infrastructure | S | Low | | CRO026-MAP-0052 | D4-CTL-04 Mcp Server Behavioral Monitoring | T1195 Supply Chain Compromise | S | Low | | CRO026-MAP-0053 | D4-CTL-04 Mcp Server Behavioral Monitoring | T1584 Compromise Infrastructure | S | Low | | CRO026-MAP-0054 | D4-CTL-05 Third-Party Ai Api Security Assessment | T1195 Supply Chain Compromise | S | Low | | CRO026-MAP-0055 | D4-CTL-05 Third-Party Ai Api Security Assessment | T1584 Compromise Infrastructure | S | Low | | CRO026-MAP-0056 | D4-CTL-06 Shadow Ai Discovery & Governance | T1195 Supply Chain Compromise | S | Low | | CRO026-MAP-0057 | D4-CTL-06 Shadow Ai Discovery & Governance | T1049 System Network Connections Discovery | S | Low | | CRO026-MAP-0058 | D4-CTL-07 Ai Software Composition Analysis (Sca) | T1195 Supply Chain Compromise | S | Low | | CRO026-MAP-0059 | D4-CTL-07 Ai Software Composition Analysis (Sca) | T1584 Compromise Infrastructure | S | Low | | CRO026-MAP-0060 | D5-CTL-01 Harmful Content Blocking | T1565 Data Manipulation | P | Medium | | CRO026-MAP-0061 | D5-CTL-02 Pii Leakage Prevention | T1565 Data Manipulation | P | Medium | | CRO026-MAP-0062 | D5-CTL-03 Copyright Detection | T1565 Data Manipulation | P | Medium | | CRO026-MAP-0063 | D5-CTL-04 Ai Watermarking Robustness | T1565 Data Manipulation | P | Medium | | CRO026-MAP-0064 | D5-CTL-05 Privacy-By-Design Verification | T1565 Data Manipulation | P | Medium | | CRO026-MAP-0065 | D5-CTL-06 Privacy-Preserving Ml Validation | T1565 Data Manipulation | P | Medium | | CRO026-MAP-0066 | D6-CTL-01 Human-In-The-Loop For High-Risk Actions | T1098 Account Manipulation | S | Low | | CRO026-MAP-0067 | D6-CTL-01 Human-In-The-Loop For High-Risk Actions | T1136 Create Account | S | Low | | CRO026-MAP-0068 | D6-CTL-02 Audit Trail Completeness | T1087 Account Discovery | S | Low | | CRO026-MAP-0069 | D6-CTL-02 Audit Trail Completeness | T1070 Indicator Removal | S | Low | | CRO026-MAP-0070 | D6-CTL-03 Ai Model Card Completeness | T1190 Exploit Public-Facing Application | S | Low | | CRO026-MAP-0071 | D6-CTL-03 Ai Model Card Completeness | T1133 External Remote Services | S | Low | | CRO026-MAP-0072 | D6-CTL-04 Ai Incident Response Readiness | T1098 Account Manipulation | S | Low | | CRO026-MAP-0073 | D6-CTL-04 Ai Incident Response Readiness | T1136 Create Account | S | Low | | CRO026-MAP-0074 | D6-CTL-05 Model Deprecation & Decommissioning | T1190 Exploit Public-Facing Application | S | Low | | CRO026-MAP-0075 | D6-CTL-05 Model Deprecation & Decommissioning | T1133 External Remote Services | S | Low | | CRO026-MAP-0076 | D6-CTL-06 Third-Party Ai Vendor Governance | T1195 Supply Chain Compromise | S | Low | | CRO026-MAP-0077 | D6-CTL-06 Third-Party Ai Vendor Governance | T1584 Compromise Infrastructure | S | Low | | CRO026-MAP-0078 | D6-CTL-07 Ai Resilience & Business Continuity | T1490 Inhibit System Recovery | S | Low | | CRO026-MAP-0079 | D6-CTL-07 Ai Resilience & Business Continuity | T1529 System Shutdown/Reboot | S | Low | | CRO026-MAP-0080 | D7-CTL-H01 Ai-Generated Phishing Simulation | T1566 Phishing | S | Low | | CRO026-MAP-0081 | D7-CTL-H01 Ai-Generated Phishing Simulation | T1595 Active Scanning | S | Low | | CRO026-MAP-0082 | D7-CTL-H02 Deepfake Detection Training | T1129 Shared Modules | S | Low | | CRO026-MAP-0083 | D7-CTL-H02 Deepfake Detection Training | T1595 Active Scanning | S | Low | | CRO026-MAP-0084 | D7-CTL-H03 Out-Of-Band Authentication | T1484 Domain or Tenant Policy Modification | S | Low | | CRO026-MAP-0085 | D7-CTL-H03 Out-Of-Band Authentication | T1110 Brute Force | S | Low | | CRO026-MAP-0086 | D7-CTL-H04 Ai Social Engineering Ir | T1595 Active Scanning | S | Low | | CRO026-MAP-0087 | D7-CTL-H04 Ai Social Engineering Ir | T1592 Gather Victim Host Information | S | Low | | CRO026-MAP-0088 | D7-CTL-H05 Ai-Enhanced External Attack Defense | T1133 External Remote Services | S | Low | | CRO026-MAP-0089 | D7-CTL-H05 Ai-Enhanced External Attack Defense | T1566 Phishing | S | Low | | CRO026-MAP-0090 | D8-CTL-01 Eu Ai Act Risk Tier Mapping | T1595 Active Scanning | S | Low | | CRO026-MAP-0091 | D8-CTL-01 Eu Ai Act Risk Tier Mapping | T1592 Gather Victim Host Information | S | Low | | CRO026-MAP-0092 | D8-CTL-02 Iso 42001 Gap Analysis | T1595 Active Scanning | S | Low | | CRO026-MAP-0093 | D8-CTL-02 Iso 42001 Gap Analysis | T1592 Gather Victim Host Information | S | Low | | CRO026-MAP-0094 | D8-CTL-03 Gpai Technical Documentation Verification | T1596 Search Open Technical Databases | S | Low | | CRO026-MAP-0095 | D8-CTL-03 Gpai Technical Documentation Verification | T1595 Active Scanning | S | Low | | CRO026-MAP-0096 | D8-CTL-04 Dora Ict Incident Reporting (Financial Sector) | T1657 Financial Theft | S | Low | | CRO026-MAP-0097 | D8-CTL-04 Dora Ict Incident Reporting (Financial Sector) | T1595 Active Scanning | S | Low | | CRO026-MAP-0098 | D8-CTL-05 Nist Sp 800-218A Compliance Check | T1587 Develop Capabilities | S | Low | | CRO026-MAP-0099 | D8-CTL-05 Nist Sp 800-218A Compliance Check | T1595 Active Scanning | S | Low | | CRO026-MAP-0100 | D9-CTL-01 Physical Harm Boundary Enforcement | T1052 Exfiltration Over Physical Medium | S | Low | | CRO026-MAP-0101 | D9-CTL-01 Physical Harm Boundary Enforcement | T1565 Data Manipulation | S | Low | | CRO026-MAP-0102 | D9-CTL-02 Safe State And Graceful Degradation | T1052 Exfiltration Over Physical Medium | S | Low | | CRO026-MAP-0103 | D9-CTL-02 Safe State And Graceful Degradation | T1490 Inhibit System Recovery | S | Low | | CRO026-MAP-0104 | D9-CTL-03 Human Override And Emergency Stop | T1052 Exfiltration Over Physical Medium | S | Low | | CRO026-MAP-0105 | D9-CTL-03 Human Override And Emergency Stop | T1190 Exploit Public-Facing Application | S | Low | | CRO026-MAP-0106 | D9-CTL-04 Cyber-Physical Attack Detection | T1052 Exfiltration Over Physical Medium | S | Low | | CRO026-MAP-0107 | D9-CTL-04 Cyber-Physical Attack Detection | T1078 Valid Accounts | S | Low | | CRO026-MAP-0108 | D9-CTL-05 Physical Environment Integrity Monitoring | T1052 Exfiltration Over Physical Medium | S | Low | | CRO026-MAP-0109 | D9-CTL-05 Physical Environment Integrity Monitoring | T1195 Supply Chain Compromise | S | Low | | CRO026-MAP-0110 | D9-CTL-06 Actuator Command Verification | T1052 Exfiltration Over Physical Medium | S | Low | | CRO026-MAP-0111 | D9-CTL-06 Actuator Command Verification | T1218 System Binary Proxy Execution | S | Low | | CRO026-MAP-0112 | D9-CTL-07 Physical Incident Evidence Preservation | T1565 Data Manipulation | P | Medium |