Results 81 to 90 of about 383 (171)
The automation of penetration testing has long been constrained by the semantic-operational divide between human expert cognition and machine-executable workflows. We present COAPT, a novel architecture that bridges this gap through large language model (
Haonan Zhang +4 more
doaj +1 more source
Reinforcement Learning-Driven Honeypots: Tactic-Based Defense for Industrial Control Systems
Traditional honeypots in Industrial Control Systems (ICS) often fail to sustain attacker engagement, exposing their deception after a few predictable responses and limiting visibility to early reconnaissance.
Ying-Dar Lin +4 more
doaj +1 more source
A Practical SOC Use Case Life Cycle with MITRE ATT&CK Simulation
A SOC use case starts by understanding real business risks and how attackers behave.These behaviors are mapped to the MITRE ATT&CK framework and matched with available security logs.Detection rules are then built and tested using real attack simulations to ensure they actually work.Once validated, alerts are handled through clear analyst playbooks and ...
openaire +1 more source
A framework for cyber threat modeling and risk assessment in smart city environments
IntroductionWith the rise of digital transformation, the concept of the smart city has emerged as a key pillar of modern urban development. However, as smart cities increasingly rely on the Internet of Things (IoT), cloud computing, and real-time data ...
Mariya Ouaissa +5 more
doaj +1 more source
CasinoLimit: An Offensive Dataset Labeled with MITRE ATT&CK Techniques
Cybersecurity exercises are a common way to train and evaluate the skills of cybersecurity professionals. These exercises also provide a unique opportunity to generate datasets with realistic attack traces on non-sensitive systems. Nevertheless, the collected logs are unlabeled, and deciding which logs are related to pentesters is a difficult problem ...
Kilian, Sébastien +9 more
openaire +2 more sources
Цифровизация современной экономики привела к масштабному проникновению информационных технологий в различные сферы человеческой деятельности. Кроме положительных эффектов это крайне обострило проблему противодействия киберугрозам, реализация которых ...
Danil Smirnov, Oleg Evsutin
doaj +1 more source
This paper describes the creation of a new dataset, UWF-ZeekData24, aligned with the Enterprise MITRE ATT&CK Framework, that addresses critical shortcomings in existing network security datasets.
Marshall Elam +4 more
doaj +1 more source
Multi-Step LLM Pipeline for Enhancing TTP Extraction in Cyber Threat Intelligence
Tactics, techniques, and procedures (TTPs) are essential for modeling adversary behavior and supporting cyber defense operations. Despite their importance, most cyber threat intelligence (CTI) is provided in unstructured formats, making automated TTP ...
Hyoung Rok Kim +4 more
doaj +1 more source

