Results 21 to 30 of about 383 (171)

MITRE ATT&CK-driven Cyber Risk Assessment

open access: yesProceedings of the 17th International Conference on Availability, Reliability and Security, 2022
Assessing the risk posed by Advanced Cyber Threats (APTs) is challenging without understanding the methods and tactics adversaries use to attack an organisation. The MITRE ATT&CK provides information on the motivation, capabilities, interests and tactics, techniques and procedures (TTPs) used by threat actors.
Mohamed Ahmed   +3 more
openaire   +2 more sources

Malicious File Detection Method Using Machine Learning and Interworking with MITRE ATT&CK Framework

open access: yesApplied Sciences, 2022
With advances in cyber threats and increased intelligence, incidents continue to occur related to new ways of using new technologies. In addition, as intelligent and advanced cyberattack technologies gradually increase, the limit of inefficient malicious
Gwanghyun Ahn   +3 more
doaj   +1 more source

Using a Graph Engine to Visualize the Reconnaissance Tactic of the MITRE ATT&CK Framework from UWF-ZeekData22

open access: yesFuture Internet, 2023
There has been a great deal of research in the area of using graph engines and graph databases to model network traffic and network attacks, but the novelty of this research lies in visually or graphically representing the Reconnaissance Tactic (TA0043 ...
Sikha S. Bagui   +5 more
doaj   +1 more source

A Survey of MulVAL Extensions and Their Attack Scenarios Coverage

open access: yesIEEE Access, 2023
Organizations employ various adversary models to assess the risk and potential impact of attacks on their networks. A popular method of visually representing cyber risks is the attack graph. Attack graphs represent vulnerabilities and actions an attacker
David Tayouri   +3 more
doaj   +1 more source

Cyber security threat modeling based on the MITRE Enterprise ATT&CK Matrix [PDF]

open access: yesSoftware and Systems Modeling, 2021
AbstractEnterprise systems are growing in complexity, and the adoption of cloud and mobile services has greatly increased the attack surface. To proactively address these security issues in enterprise systems, this paper proposes a threat modeling language for enterprise security based on the MITRE Enterprise ATT&CK Matrix. It is designed using the
Wenjun Xiong   +3 more
openaire   +1 more source

BAN: Predicting APT Attack Based on Bayesian Network With MITRE ATT&CK Framework

open access: yesIEEE Access, 2023
Since cyberattacks have become sophisticated in the form of advanced persistent threats (APTs), predicting and defending the APT attacks have drawn lots of attention.
Youngjoon Kim   +4 more
doaj   +1 more source

Enhancing the STIX Representation of MITRE ATT&CK for Group Filtering and Technique Prioritization

open access: yesEuropean Conference on Cyber Warfare and Security, 2022
In this paper, we enhance the machine-readable representation of the ATT&CK Groups knowledge base provided by MITRE in STIX 2.1 format to make available and queryable additional types of contextual information. Such information includes the motivations of activity groups, the countries they have originated from, and the sectors and countries they ...
Mateusz Zych, Vasileios Mavroeidis
openaire   +3 more sources

Security Assessment Rating Framework for Enterprises using MITRE ATT&CK Matrix

open access: yesCoRR, 2021
Threats targeting cyberspace are becoming more prominent and intelligent day by day. This inherently leads to a dire demand for continuous security validation and testing. Using this paper, we aim to provide a holistic and precise security analysis rating framework for organizations that increases the overall coherency of the outcomes of such testing ...
Hardik Manocha   +4 more
openaire   +2 more sources

Analysis and Characterization of Cyber Threats Leveraging the MITRE ATT&CK Database

open access: yesIEEE Access
MITRE ATT&CK is a comprehensive knowledge-base of adversary tactics, techniques, and procedures (TTP) based on real-world attack scenarios. It has been used in different sectors, such as government, academia, and industry, as a foundation for ...
Bader Al-Sada   +2 more
doaj   +1 more source

Что такое MITRE ATT&CK: разбор популярной тактической модели

open access: yesИнформатика. Экономика. Управление
С развитием информационных технологий и увеличением числа подключенных устройств, количество и сложность кибератак постоянно растут, что делает защиту данных и систем первоочередной задачей для компаний и государственных учреждений.
А. С. Зуфарова   +1 more
doaj   +1 more source

Home - About - Disclaimer - Privacy