Results 21 to 30 of about 383 (171)
MITRE ATT&CK-driven Cyber Risk Assessment
Assessing the risk posed by Advanced Cyber Threats (APTs) is challenging without understanding the methods and tactics adversaries use to attack an organisation. The MITRE ATT&CK provides information on the motivation, capabilities, interests and tactics, techniques and procedures (TTPs) used by threat actors.
Mohamed Ahmed +3 more
openaire +2 more sources
Malicious File Detection Method Using Machine Learning and Interworking with MITRE ATT&CK Framework
With advances in cyber threats and increased intelligence, incidents continue to occur related to new ways of using new technologies. In addition, as intelligent and advanced cyberattack technologies gradually increase, the limit of inefficient malicious
Gwanghyun Ahn +3 more
doaj +1 more source
There has been a great deal of research in the area of using graph engines and graph databases to model network traffic and network attacks, but the novelty of this research lies in visually or graphically representing the Reconnaissance Tactic (TA0043 ...
Sikha S. Bagui +5 more
doaj +1 more source
A Survey of MulVAL Extensions and Their Attack Scenarios Coverage
Organizations employ various adversary models to assess the risk and potential impact of attacks on their networks. A popular method of visually representing cyber risks is the attack graph. Attack graphs represent vulnerabilities and actions an attacker
David Tayouri +3 more
doaj +1 more source
Cyber security threat modeling based on the MITRE Enterprise ATT&CK Matrix [PDF]
AbstractEnterprise systems are growing in complexity, and the adoption of cloud and mobile services has greatly increased the attack surface. To proactively address these security issues in enterprise systems, this paper proposes a threat modeling language for enterprise security based on the MITRE Enterprise ATT&CK Matrix. It is designed using the
Wenjun Xiong +3 more
openaire +1 more source
BAN: Predicting APT Attack Based on Bayesian Network With MITRE ATT&CK Framework
Since cyberattacks have become sophisticated in the form of advanced persistent threats (APTs), predicting and defending the APT attacks have drawn lots of attention.
Youngjoon Kim +4 more
doaj +1 more source
Enhancing the STIX Representation of MITRE ATT&CK for Group Filtering and Technique Prioritization
In this paper, we enhance the machine-readable representation of the ATT&CK Groups knowledge base provided by MITRE in STIX 2.1 format to make available and queryable additional types of contextual information. Such information includes the motivations of activity groups, the countries they have originated from, and the sectors and countries they ...
Mateusz Zych, Vasileios Mavroeidis
openaire +3 more sources
Security Assessment Rating Framework for Enterprises using MITRE ATT&CK Matrix
Threats targeting cyberspace are becoming more prominent and intelligent day by day. This inherently leads to a dire demand for continuous security validation and testing. Using this paper, we aim to provide a holistic and precise security analysis rating framework for organizations that increases the overall coherency of the outcomes of such testing ...
Hardik Manocha +4 more
openaire +2 more sources
Analysis and Characterization of Cyber Threats Leveraging the MITRE ATT&CK Database
MITRE ATT&CK is a comprehensive knowledge-base of adversary tactics, techniques, and procedures (TTP) based on real-world attack scenarios. It has been used in different sectors, such as government, academia, and industry, as a foundation for ...
Bader Al-Sada +2 more
doaj +1 more source
Что такое MITRE ATT&CK: разбор популярной тактической модели
С развитием информационных технологий и увеличением числа подключенных устройств, количество и сложность кибератак постоянно растут, что делает защиту данных и систем первоочередной задачей для компаний и государственных учреждений.
А. С. Зуфарова +1 more
doaj +1 more source

