Not part of a guided workflow —
Next best move:Open the platform atlas Atlas
← All workflows

Supplier build compromise

Where did the build trust chain fail, and how early could we see it?

0 of 6 steps visited

At the end of this run: You can point to the earliest trustworthy detection and show the control that would have caught it.

  1. Attack Lab replaynextReplay a compromised build trust chain and find the earliest trustworthy detection.Synthetic
    MITRE attack context for this stepAttack Lab replay · same replay, tools, defenses and evidence
    No replay recorded in this tab yet. Replay the build-tampering step and its evidence will appear here.
  2. MITRE defensive playbookEvery reviewed Attack Lab technique with its defensive tools, fixture indicators, analytics and evidence.Synthetic
    MITRE attack context for this stepMITRE defensive playbook · same replay, tools, defenses and evidence
    No replay recorded in this tab yet. Replay the build-tampering step and its evidence will appear here.
  3. Trusted trojan proofA trusted component carrying untrusted change.Synthetic
    MITRE attack context for this stepTrusted trojan proof · same replay, tools, defenses and evidence
    No replay recorded in this tab yet. Replay the build-tampering step and its evidence will appear here.
  4. Intercept pointsWhere the attack could have been intercepted.Synthetic
    MITRE attack context for this stepIntercept points · same replay, tools, defenses and evidence
    No replay recorded in this tab yet. Replay the build-tampering step and its evidence will appear here.
  5. Verify remediationDid the supplier fix reach the product?Synthetic
    MITRE attack context for this stepVerify remediation · same replay, tools, defenses and evidence
    No replay recorded in this tab yet. Replay the build-tampering step and its evidence will appear here.
  6. Recovery gatesGates a recovery must pass.Synthetic
    MITRE attack context for this stepRecovery gates · same replay, tools, defenses and evidence
    No replay recorded in this tab yet. Replay the build-tampering step and its evidence will appear here.

Run debrief

What you can say
Nothing yet — no step of this run has been opened.
Not covered yet
Attack Lab replay · MITRE defensive playbook · Trusted trojan proof · Intercept points · Verify remediation · Recovery gates
Evidence basis
None yet
Status
0 of 6 steps opened

"Opened" means viewed in this browser session, not verified. Synthetic results are exercise data, not findings about any real company or vehicle.