Constructing Multi-label Hierarchical Classification Models for MITRE ATT&CK Text Tagging
MITRE ATT&CK is a cybersecurity knowledge base that organizes threat actor and cyber-attack information into a set of tactics describing the reasons and goals threat actors have for carrying out attacks, with each tactic having a set of techniques that describe the potential methods used in these attacks.
Andrew Crossman +7 more
openaire +2 more sources
Teaching Offensive Security: A Lifecycle-Sequenced Curriculum from Kali to MITRE ATT&CK
Volume 5 of 10 in the Engineering-to-Research Monograph Series. There is a persistent gap in cybersecurity education between knowing about attacks and being able to perform and counter them. This report presents and defends a curriculum design the author developed while designing and delivering an introductory cybersecurity engineering course: lead ...
openaire +2 more sources
Sistema de caracterización de técnicas MITRE & ATT&CK en incidentes de ciberseguridad
En la actualidad, la ciberseguridad es un aspecto crítico debido a la complejidad creciente de los incidentes. Por ello son necesarios sistemas que identifiquen y contrarresten los riesgos eficazmente. En esta propuesta se presenta un sistema de aprendizaje automático supervisado capaz de analizar registros de tráfico para caracterizar técnicas y ...
Sánchez Zas, Carmen +4 more
openaire +4 more sources
Detecting the most vulnerable nodes in the AND-OR graph using MITRE ATT&CK
In today's digital landscape, the prevention of cyber attacks has become exceptionally crucial. This is especially true for safety-critical systems, where safeguarding against these threats is of paramount importance. To address this concern, the MITRE Corporation has developed ATT&CK, an extensive framework comprising data matrices.
openaire +1 more source
Trusted Threat Intelligence Sharing in Practice and Performance Benchmarking through the Hyperledger Fabric Platform. [PDF]
Ali H +7 more
europepmc +1 more source
Improved technique for order of preference by similarity to ideal solution method for identifying key terrain in cyberspace asset layer. [PDF]
Liu L, Zhou Y, Xu Q, Shi Q, Hu X.
europepmc +1 more source
This research evaluates the detection coverage of Wazuh SIEM against selected MITRE ATT&CK techniques in an Ubuntu 24.04 Linux environment. A controlled laboratory setup was created using VirtualBox and Ubuntu, where multiple ATT&CK techniques including privilege escalation, account manipulation, persistence, discovery, and defense evasion activities ...
openaire +1 more source
An Operational Hybrid SIEM Framework for OT Anomaly Detection. [PDF]
Rahmani J +3 more
europepmc +1 more source
LLM-guided contrastive evidence mining for explainable cyber threat intelligence classification. [PDF]
Peng J +4 more
europepmc +1 more source
A socio-technical framework for cyber-resilience in hybrid oil-renewable energy grids. [PDF]
Anderson B, Hossain G.
europepmc +1 more source

