T1211 - Exploitation For Defense Evasion - MITRE ATT&CK

Threat entity extracted from intelligence sources

Frequency
3
occurrences
First Seen
April 28, 2026
Last Seen
September 2, 2026

Related Threat Clusters

  • SonicWall SMA1000 Faces Critical Zero-Day Exploitation

    SonicWall disclosed two critical vulnerabilities in its SMA1000 series appliances, CVE-2026-83548 and CVE-2026-83549, which are being actively exploited. CVE-2026-83548 is a pre-authentication server-side request…

    33 articles · Updated September 2, 2026
  • OpenAI Launches GPT-5.4-Cyber Amidst Cybersecurity Arms Race

    OpenAI has introduced GPT-5.4-Cyber, a specialized AI model for defensive cybersecurity, available only to vetted professionals through its Trusted Access for Cyber (TAC) program. This model is designed to facilitate…

    1370 articles · Updated April 14, 2026
  • ATT&CK v19 Release Introduces Major Changes in Defense Evasion Tactics

    The ATT&CK framework has released version 19, which includes significant updates to its structure and coverage. Notably, the Defense Evasion Tactic has been split into two distinct categories: Stealth and Defense…

    7 articles · Updated April 28, 2026

Recent Intelligence Reports

  • Active Exploitation Alert: SonicWall SMA 1000 Zero-Day Vulnerabilities (CVE-2024 — Rescana · September 2, 2026
  • [SecurityIntel] 29 Jul | AI Models Exploit Artifactory Zero-Days to Escape — Buttondown · July 29, 2026
  • ATT&CK v19: The Defense Evasion Split, ICS Sub-Techniques, New AI & Social Engineering Coverage… — Medium · April 28, 2026

CVSS v3.1 Breakdown