Galeax / CVE2CAPEC
Generate MITRE ATT&CK and D3FEND from a list of CVEs. Database with CVE, CWE, CAPEC, MITRE ATT&CK and D3FEND Techniques data is updated daily. Showcased at BlackHat Europe 2025 Arsenal.
View on GitHubAI Architecture Analysis
This repository is indexed by RepoMind. By analyzing Galeax/CVE2CAPEC in our AI interface, you can instantly generate complete architecture diagrams, visualize control flows, and perform automated security audits across the entire codebase.
Our Agentic Context Augmented Generation (Agentic CAG) engine loads full source files into context on-demand, avoiding the fragmentation of traditional RAG systems. Ask questions about the architecture, dependencies, or specific features to see it in action.
Repository Overview (README excerpt)
Crawler viewCVE2CAPEC Get CVE, CWE, CAPEC, MITRE ATT&CK and MITRE D3FEND Techniques data automatically. Try it online at https://galeax.github.io/CVE2CAPEC/ . Table of contents Introduction Installation Usage Update databases Get new CVEs License Contact Explore this repo data with our MITRE ATT&CK and MITRE D3FEND generator Data generated by this project also serve the interactive MITRE ATT&CK and MITRE D3FEND generator available at https://galeax.github.io/CVE2CAPEC/ . click here for HD version Introduction This project allows you to manage get all new CVE with their CWE, CAPEC, MITRE ATT&CK and MITRE D3FEND Techniques. All CVE data are stored in folder. **CVE2CAPEC does not need to be run by yourself.** In fact, github actions update the database every day at 00:05 UTC so you can get the new CVE with all their data in . However, if you want to run this project by your own : Installation Update databases Build the CVE - CWE - CAPEC - MITRE ATT&CK - MITRE D3FEND Techniques links **1. Get new CVEs** **2. Get CWEs from new CVEs** **3. Get CAPECs from CWEs** **4. Get MITRE ATT&CK Techniques from CAPECs** **4. Get MITRE D3FEND Techniques from MITRE ATT&CK Techniques** License This project is released under the GNU General Public License version 3 (the GPL). For commercial use where you need to not be using the GPL, please contact us at for additional options. Contact Made with ❤️ in 🇫🇷 by