Decoding the MITRE Engenuity ATT&CK Enterprise Evaluation: An Analysis of EDR Performance in Real-World Environments
Fuente:
arXiv
Saved in:
| Main Authors: | Shen, Xiangmin, Li, Zhenyuan, Burleigh, Graham, Wang, Lingzhi, Chen, Yan |
|---|---|
| Format: | Preprint |
| Published: |
2024
|
| Subjects: | |
| Online Access: | |
| Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Similar Items
A Proactive Decoy Selection Scheme for Cyber Deception using MITRE ATT&CK
by: Zambianco, Marco, et al.
Published: (2024)
by: Zambianco, Marco, et al.
Published: (2024)
MITRE ATT&CK Applications in Cybersecurity and The Way Forward
by: Jiang, Yuning, et al.
Published: (2025)
by: Jiang, Yuning, et al.
Published: (2025)
Constructing Multi-label Hierarchical Classification Models for MITRE ATT&CK Text Tagging
by: Crossman, Andrew, et al.
Published: (2026)
by: Crossman, Andrew, et al.
Published: (2026)
Labeling NIDS Rules with MITRE ATT&CK Techniques: Machine Learning vs. Large Language Models
by: Daniel, Nir, et al.
Published: (2024)
by: Daniel, Nir, et al.
Published: (2024)
Enhancing cybersecurity defenses: a multicriteria decision-making approach to MITRE ATT&CK mitigation strategy
by: Mohamed, Ihab, et al.
Published: (2024)
by: Mohamed, Ihab, et al.
Published: (2024)
An Evaluation Framework for Network IDS/IPS Datasets: Leveraging MITRE ATT&CK and Industry Relevance Metrics
by: Tori, Adrita Rahman, et al.
Published: (2025)
by: Tori, Adrita Rahman, et al.
Published: (2025)
Your ATs to Ts: MITRE ATT&CK Attack Technique to P-SSCRM Task Mapping
by: Hamer, Sivana, et al.
Published: (2025)
by: Hamer, Sivana, et al.
Published: (2025)
Operationalising Cyber Risk Management Using AI: Connecting Cyber Incidents to MITRE ATT&CK Techniques, Security Controls, and Metrics
by: Sherif, Emad, et al.
Published: (2026)
by: Sherif, Emad, et al.
Published: (2026)
Incorporating Gradients to Rules: Towards Lightweight, Adaptive Provenance-based Intrusion Detection
by: Wang, Lingzhi, et al.
Published: (2024)
by: Wang, Lingzhi, et al.
Published: (2024)
From Sands to Mansions: Towards Automated Cyberattack Emulation with Classical Planning and Large Language Models
by: Wang, Lingzhi, et al.
Published: (2024)
by: Wang, Lingzhi, et al.
Published: (2024)
PARIS: A Practical, Adaptive Trace-Fetching and Real-Time Malicious Behavior Detection System
by: Wang, Jian, et al.
Published: (2024)
by: Wang, Jian, et al.
Published: (2024)
PentestAgent: Incorporating LLM Agents to Automated Penetration Testing
by: Shen, Xiangmin, et al.
Published: (2024)
by: Shen, Xiangmin, et al.
Published: (2024)
An Alignment Between the CRA's Essential Requirements and the ATT&CK's Mitigations
by: Ruohonen, Jukka, et al.
Published: (2025)
by: Ruohonen, Jukka, et al.
Published: (2025)
Context-Aware Web Attack Detection in Open-Source SIEM Systems via MITRE ATT&CK-Enriched Behavioral Profiling
by: Alboushy, Badr, et al.
Published: (2026)
by: Alboushy, Badr, et al.
Published: (2026)
Rule-ATT&CK Mapper (RAM): Mapping SIEM Rules to TTPs Using LLMs
by: Wudali, Prasanna N., et al.
Published: (2025)
by: Wudali, Prasanna N., et al.
Published: (2025)
ISADM: An Integrated STRIDE, ATT&CK, and D3FEND Model for Threat Modeling Against Real-world Adversaries
by: Hasan, Khondokar Fida, et al.
Published: (2025)
by: Hasan, Khondokar Fida, et al.
Published: (2025)
AEAS: Actionable Exploit Assessment System
by: Shen, Xiangmin, et al.
Published: (2025)
by: Shen, Xiangmin, et al.
Published: (2025)
KillChainGraph: ML Framework for Predicting and Mapping ATT&CK Techniques
by: Singh, Chitraksh, et al.
Published: (2025)
by: Singh, Chitraksh, et al.
Published: (2025)
Marlin: Knowledge-Driven Analysis of Provenance Graphs for Efficient and Robust Detection of Cyber Attacks
by: Li, Zhenyuan, et al.
Published: (2024)
by: Li, Zhenyuan, et al.
Published: (2024)
Automated Penetration Testing with LLM Agents and Classical Planning
by: Wang, Lingzhi, et al.
Published: (2025)
by: Wang, Lingzhi, et al.
Published: (2025)
Security Logs to ATT&CK Insights: Leveraging LLMs for High-Level Threat Understanding and Cognitive Trait Inference
by: Hans, Soham, et al.
Published: (2025)
by: Hans, Soham, et al.
Published: (2025)
Beyond Input Guardrails: Reconstructing Cross-Agent Semantic Flows for Execution-Aware Attack Detection
by: Wei, Yangyang, et al.
Published: (2026)
by: Wei, Yangyang, et al.
Published: (2026)
GraphFaaS: Serverless GNN Inference for Burst-Resilient, Real-Time Intrusion Detection
by: Wang, Lingzhi, et al.
Published: (2025)
by: Wang, Lingzhi, et al.
Published: (2025)
CyberLLM-FINDS 2025: Instruction-Tuned Fine-tuning of Domain-Specific LLMs with Retrieval-Augmented Generation and Graph Integration for MITRE Evaluation
by: Iyer, Vasanth, et al.
Published: (2026)
by: Iyer, Vasanth, et al.
Published: (2026)
HoneyWin: High-Interaction Windows Honeypot in Enterprise Environment
by: Aung, Yan Lin, et al.
Published: (2025)
by: Aung, Yan Lin, et al.
Published: (2025)
Breaking the Bulkhead: Demystifying Cross-Namespace Reference Vulnerabilities in Kubernetes Operators
by: Chen, Andong, et al.
Published: (2025)
by: Chen, Andong, et al.
Published: (2025)
AgentDyn: Are Your Agent Security Defenses Deployable in Real-World Dynamic Environments?
by: Li, Hao, et al.
Published: (2026)
by: Li, Hao, et al.
Published: (2026)
RAS-Eval: A Comprehensive Benchmark for Security Evaluation of LLM Agents in Real-World Environments
by: Fu, Yuchuan, et al.
Published: (2025)
by: Fu, Yuchuan, et al.
Published: (2025)
Towards Automatic Hands-on-Keyboard Attack Detection Using LLMs in EDR Solutions
by: Portnoy, Amit, et al.
Published: (2024)
by: Portnoy, Amit, et al.
Published: (2024)
Towards Scalable and Interpretable Mobile App Risk Analysis via Large Language Models
by: Yang, Yu, et al.
Published: (2025)
by: Yang, Yu, et al.
Published: (2025)
Exploration on Real World Assets and Tokenization
by: Xia, Ning, et al.
Published: (2025)
by: Xia, Ning, et al.
Published: (2025)
RealSec-bench: A Benchmark for Evaluating Secure Code Generation in Real-World Repositories
by: Wang, Yanlin, et al.
Published: (2026)
by: Wang, Yanlin, et al.
Published: (2026)
Comprehensive Evaluation of Cloaking Backdoor Attacks on Object Detector in Real-World
by: Ma, Hua, et al.
Published: (2025)
by: Ma, Hua, et al.
Published: (2025)
How hard can it be? Quantifying MITRE attack campaigns with attack trees and cATM logic
by: Nicoletti, Stefano M., et al.
Published: (2024)
by: Nicoletti, Stefano M., et al.
Published: (2024)
SynthCTI: LLM-Driven Synthetic CTI Generation to enhance MITRE Technique Mapping
by: Ruiz-Ródenas, Álvaro, et al.
Published: (2025)
by: Ruiz-Ródenas, Álvaro, et al.
Published: (2025)
Evaluating Post-Quantum Cryptography on Embedded Systems: A Performance Analysis
by: Dong, Ben, et al.
Published: (2024)
by: Dong, Ben, et al.
Published: (2024)
HookChain: A new perspective for Bypassing EDR Solutions
by: Junior, Helvio Carvalho
Published: (2024)
by: Junior, Helvio Carvalho
Published: (2024)
Assessing the Real-World Impact of Post-Quantum Cryptography on WPA-Enterprise Networks
by: Köder, Lukas, et al.
Published: (2026)
by: Köder, Lukas, et al.
Published: (2026)
Evaluating Privilege Usage of Agents with Real-World Tools
by: Zhang, Quan, et al.
Published: (2026)
by: Zhang, Quan, et al.
Published: (2026)
Enterprise Security Incident Analysis and Countermeasures Based on the T-Mobile Data Breach
by: Cui, Zhuohan, et al.
Published: (2025)
by: Cui, Zhuohan, et al.
Published: (2025)
Similar Items
-
A Proactive Decoy Selection Scheme for Cyber Deception using MITRE ATT&CK
by: Zambianco, Marco, et al.
Published: (2024) -
MITRE ATT&CK Applications in Cybersecurity and The Way Forward
by: Jiang, Yuning, et al.
Published: (2025) -
Constructing Multi-label Hierarchical Classification Models for MITRE ATT&CK Text Tagging
by: Crossman, Andrew, et al.
Published: (2026) -
Labeling NIDS Rules with MITRE ATT&CK Techniques: Machine Learning vs. Large Language Models
by: Daniel, Nir, et al.
Published: (2024) -
Enhancing cybersecurity defenses: a multicriteria decision-making approach to MITRE ATT&CK mitigation strategy
by: Mohamed, Ihab, et al.
Published: (2024)