MITRE ATT&CK: State of the Art and Way Forward

被引:1
|
作者
Al-sada, Bader [1 ]
Sadighian, Alireza [1 ]
Oligeri, Gabriele [1 ]
机构
[1] Hamad Bin Khalifa Univ, Qatar Fdn, Coll Sci & Engn, Div Informat & Comp Technol, Doha, Qatar
关键词
MITRE ATT&CK framework; cyber-threat intelligence; security risk analysis; FRAMEWORK;
D O I
10.1145/3687300
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
MITRE ATT&CK is a comprehensive framework of adversary tactics, techniques, and procedures based on real-world observations. It has been used as a foundation for threat modeling in different sectors, such as government, academia, and industry. To the best of our knowledge, no previous work has been devoted to the comprehensive collection, study, and investigation of the current state of the art leveraging the MITRE ATT&CK framework. We select and inspect more than 50 major research contributions, while conducting a detailed analysis of their methodology and objectives in relation to the MITRE ATT&CK framework. We provide a categorization of the identified papers according to different criteria such as use cases, application scenarios, adopted methodologies, and the use of additional data. Finally, we discuss open issues and future research directions involving not only the MITRE ATT&CK framework but also the fields of threat analysis, threat modeling, and in general cyber-threat intelligence.
引用
收藏
页数:37
相关论文
共 50 条
  • [21] Destructive Malwares on MITRE ATT&CK Tactics for Cyber Warfare: A Brief Survey and Analysis
    Park, Seongmin
    Lee, Myeongsu
    Na, Sarang
    Lim, Joonhyung
    MOBILE INTERNET SECURITY, MOBISEC 2023, 2024, 2095 : 260 - 270
  • [22] Probabilistic Attack Sequence Generation and Execution Based on MITRE ATT&CK for ICS Datasets
    Choi, Seungoh
    Yun, Jeong-Han
    Min, Byung-Gil
    PROCEEDINGS OF 14TH WORKSHOP ON CYBER SECURITY EXPERIMENTATION AND TEST (CSET 2021), 2021, : 41 - 48
  • [23] Improving ML-based Solutions for Linking of CVE to MITRE ATT&CK Techniques
    El Jaouhari, Saad
    Tamani, Nouredine
    Jacob, Rohan Isaac
    2024 IEEE 48TH ANNUAL COMPUTERS, SOFTWARE, AND APPLICATIONS CONFERENCE, COMPSAC 2024, 2024, : 2442 - 2447
  • [24] BAN: Predicting APT Attack Based on Bayesian Network With MITRE ATT&CK Framework
    Kim, Youngjoon
    Lee, Insup
    Kwon, Hyuk
    Lee, Kyeongsik
    Yoon, Jiwon
    IEEE ACCESS, 2023, 11 : 91949 - 91968
  • [25] SOLVE-IT: A proposed digital forensic knowledge base inspired by MITRE ATT&CK
    Hargreaves, Christopher
    van Beek, Harm
    Casey, Eoghan
    FORENSIC SCIENCE INTERNATIONAL-DIGITAL INVESTIGATION, 2025, 52
  • [26] Towards a Security Analysis of Radiological Medical Devices using the MITRE ATT&CK Framework
    Zisad, Sharif Noor
    Hasan, Ragib
    SOUTHEASTCON 2024, 2024, : 1577 - 1582
  • [27] A Novel Identity Authentication Mechanism for Unmanned Maritime Vessels Communication Based on MITRE ATT&CK & CK Framework
    He, Jun-Xian
    Chang, Shih-Hao
    JOURNAL OF MARINE SCIENCE AND TECHNOLOGY-TAIWAN, 2024, 32 (02): : 170 - 180
  • [28] A process mining-based method for attacker profiling using the MITRE ATT&CK taxonomy
    Rodriguez, Marcelo
    Betarte, Gustavo
    Calegari, Daniel
    JOURNAL OF INTERNET SERVICES AND APPLICATIONS, 2024, 15 (01) : 212 - 232
  • [29] Cyber Threat Dictionary Using MITRE ATT&CK Matrix and NIST Cybersecurity Framework Mapping
    Kwon, Roger
    Ashley, Travis
    Castleberry, Jerry
    Mckenzie, Penny
    Gourisetti, Sri Nikhil Gupta
    2020 RESILIENCE WEEK (RWS), 2020, : 106 - 112
  • [30] Malicious File Detection Method Using Machine Learning and Interworking with MITRE ATT&CK Framework
    Ahn, Gwanghyun
    Kim, Kookjin
    Park, Wonhyung
    Shin, Dongkyoo
    APPLIED SCIENCES-BASEL, 2022, 12 (21):