Your ATs to Ts: MITRE ATT&CK Attack Technique to P-SSCRM Task Mapping
Fuente:
arXiv
Saved in:
| Main Authors: | Hamer, Sivana, Bowen, Jacob, Haque, Md Nazmul, Madden, Chris, Williams, Laurie |
|---|---|
| Format: | Preprint |
| Published: |
2025
|
| Subjects: | |
| Online Access: | |
| Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Similar Items
Closing the Chain: How to reduce your risk of being SolarWinds, Log4j, or XZ Utils
by: Hamer, Sivana, et al.
Published: (2025)
by: Hamer, Sivana, et al.
Published: (2025)
Beyond Single Reports: Evaluating Automated ATT&CK Technique Extraction in Multi-Report Campaign Settings
by: Haque, Md Nazmul, et al.
Published: (2026)
by: Haque, Md Nazmul, et al.
Published: (2026)
Just another copy and paste? Comparing the security vulnerabilities of ChatGPT generated code and StackOverflow answers
by: Hamer, Sivana, et al.
Published: (2024)
by: Hamer, Sivana, et al.
Published: (2024)
Trusting code in the wild: Exploring contributor reputation measures to review dependencies in the Rust ecosystem
by: Hamer, Sivana, et al.
Published: (2024)
by: Hamer, Sivana, et al.
Published: (2024)
An Alignment Between the CRA's Essential Requirements and the ATT&CK's Mitigations
by: Ruohonen, Jukka, et al.
Published: (2025)
by: Ruohonen, Jukka, et al.
Published: (2025)
MITRE ATT&CK Applications in Cybersecurity and The Way Forward
by: Jiang, Yuning, et al.
Published: (2025)
by: Jiang, Yuning, et al.
Published: (2025)
Labeling NIDS Rules with MITRE ATT&CK Techniques: Machine Learning vs. Large Language Models
by: Daniel, Nir, et al.
Published: (2024)
by: Daniel, Nir, et al.
Published: (2024)
A Proactive Decoy Selection Scheme for Cyber Deception using MITRE ATT&CK
by: Zambianco, Marco, et al.
Published: (2024)
by: Zambianco, Marco, et al.
Published: (2024)
Constructing Multi-label Hierarchical Classification Models for MITRE ATT&CK Text Tagging
by: Crossman, Andrew, et al.
Published: (2026)
by: Crossman, Andrew, et al.
Published: (2026)
Decoding the MITRE Engenuity ATT&CK Enterprise Evaluation: An Analysis of EDR Performance in Real-World Environments
by: Shen, Xiangmin, et al.
Published: (2024)
by: Shen, Xiangmin, et al.
Published: (2024)
Enhancing cybersecurity defenses: a multicriteria decision-making approach to MITRE ATT&CK mitigation strategy
by: Mohamed, Ihab, et al.
Published: (2024)
by: Mohamed, Ihab, et al.
Published: (2024)
Operationalising Cyber Risk Management Using AI: Connecting Cyber Incidents to MITRE ATT&CK Techniques, Security Controls, and Metrics
by: Sherif, Emad, et al.
Published: (2026)
by: Sherif, Emad, et al.
Published: (2026)
An Evaluation Framework for Network IDS/IPS Datasets: Leveraging MITRE ATT&CK and Industry Relevance Metrics
by: Tori, Adrita Rahman, et al.
Published: (2025)
by: Tori, Adrita Rahman, et al.
Published: (2025)
KillChainGraph: ML Framework for Predicting and Mapping ATT&CK Techniques
by: Singh, Chitraksh, et al.
Published: (2025)
by: Singh, Chitraksh, et al.
Published: (2025)
Context-Aware Web Attack Detection in Open-Source SIEM Systems via MITRE ATT&CK-Enriched Behavioral Profiling
by: Alboushy, Badr, et al.
Published: (2026)
by: Alboushy, Badr, et al.
Published: (2026)
Proactive Software Supply Chain Risk Management Framework (P-SSCRM)
by: Williams, Laurie, et al.
Published: (2024)
by: Williams, Laurie, et al.
Published: (2024)
How Do Semantically Equivalent Code Transformations Impact Membership Inference on LLMs for Code?
by: Yang, Hua, et al.
Published: (2025)
by: Yang, Hua, et al.
Published: (2025)
Rule-ATT&CK Mapper (RAM): Mapping SIEM Rules to TTPs Using LLMs
by: Wudali, Prasanna N., et al.
Published: (2025)
by: Wudali, Prasanna N., et al.
Published: (2025)
Mining Temporal Attack Patterns from Cyberthreat Intelligence Reports
by: Rahman, Md Rayhanur, et al.
Published: (2024)
by: Rahman, Md Rayhanur, et al.
Published: (2024)
Analyzing Challenges in Deployment of the SLSA Framework for Software Supply Chain Security
by: Tamanna, Mahzabin, et al.
Published: (2024)
by: Tamanna, Mahzabin, et al.
Published: (2024)
RiskHarvester: A Risk-based Tool to Prioritize Secret Removal Efforts in Software Artifacts
by: Basak, Setu Kumar, et al.
Published: (2025)
by: Basak, Setu Kumar, et al.
Published: (2025)
Comparing Effectiveness and Efficiency of Interactive Application Security Testing (IAST) and Runtime Application Self-Protection (RASP) Tools in a Large Java-based System
by: Seth, Aishwarya, et al.
Published: (2023)
by: Seth, Aishwarya, et al.
Published: (2023)
What's in a Package? Getting Visibility Into Dependencies Using Security-Sensitive API Calls
by: Rahman, Imranur, et al.
Published: (2024)
by: Rahman, Imranur, et al.
Published: (2024)
"Your AI, My Shell": Demystifying Prompt Injection Attacks on Agentic AI Coding Editors
by: Liu, Yue, et al.
Published: (2025)
by: Liu, Yue, et al.
Published: (2025)
How Quantization Impacts Privacy Risk on LLMs for Code?
by: Haque, Md Nazmul, et al.
Published: (2025)
by: Haque, Md Nazmul, et al.
Published: (2025)
AssetHarvester: A Static Analysis Tool for Detecting Secret-Asset Pairs in Software Artifacts
by: Basak, Setu Kumar, et al.
Published: (2024)
by: Basak, Setu Kumar, et al.
Published: (2024)
GenDetect: Generalizing Reactive Detection for Resilience Against Imitative DeFi Attack Cascade
by: Cai, Bowen, et al.
Published: (2026)
by: Cai, Bowen, et al.
Published: (2026)
CAShift: Benchmarking Log-Based Cloud Attack Detection under Normality Shift
by: Yu, Jiongchi, et al.
Published: (2025)
by: Yu, Jiongchi, et al.
Published: (2025)
S3C2 Summit 2025-07: Government Secure Supply Chain Summit
by: Hamer, Sivana, et al.
Published: (2026)
by: Hamer, Sivana, et al.
Published: (2026)
Secure or Suspect? Investigating Package Hallucinations of Shell Command in Original and Quantized LLMs
by: Haque, Md Nazmul, et al.
Published: (2025)
by: Haque, Md Nazmul, et al.
Published: (2025)
Publish Your Threat Models! The benefits far outweigh the dangers
by: Kohnfelder, Loren, et al.
Published: (2025)
by: Kohnfelder, Loren, et al.
Published: (2025)
ISADM: An Integrated STRIDE, ATT&CK, and D3FEND Model for Threat Modeling Against Real-world Adversaries
by: Hasan, Khondokar Fida, et al.
Published: (2025)
by: Hasan, Khondokar Fida, et al.
Published: (2025)
Unveiling Dynamic Binary Instrumentation Techniques
by: Llorente-Vazquez, Oscar, et al.
Published: (2025)
by: Llorente-Vazquez, Oscar, et al.
Published: (2025)
Verbatim Data Transcription Failures in LLM Code Generation: A State-Tracking Stress Test
by: Haque, Mohd Ariful, et al.
Published: (2026)
by: Haque, Mohd Ariful, et al.
Published: (2026)
Poster: libdebug, Build Your Own Debugger for a Better (Hello) World
by: Digregorio, Gabriele, et al.
Published: (2025)
by: Digregorio, Gabriele, et al.
Published: (2025)
Assessing the Effectiveness of Binary-Level CFI Techniques
by: Vaidya, Ruturaj K., et al.
Published: (2024)
by: Vaidya, Ruturaj K., et al.
Published: (2024)
Smart Cuts: Enhance Active Learning for Vulnerability Detection by Pruning Hard-to-Learn Data
by: Lan, Xiang, et al.
Published: (2025)
by: Lan, Xiang, et al.
Published: (2025)
SmartShift: A Secure and Efficient Approach to Smart Contract Migration
by: Hossain, Tahrim, et al.
Published: (2025)
by: Hossain, Tahrim, et al.
Published: (2025)
I Know Who Clones Your Code: Interpretable Smart Contract Similarity Detection
by: Liu, Zhenguang, et al.
Published: (2025)
by: Liu, Zhenguang, et al.
Published: (2025)
Security Logs to ATT&CK Insights: Leveraging LLMs for High-Level Threat Understanding and Cognitive Trait Inference
by: Hans, Soham, et al.
Published: (2025)
by: Hans, Soham, et al.
Published: (2025)
Similar Items
-
Closing the Chain: How to reduce your risk of being SolarWinds, Log4j, or XZ Utils
by: Hamer, Sivana, et al.
Published: (2025) -
Beyond Single Reports: Evaluating Automated ATT&CK Technique Extraction in Multi-Report Campaign Settings
by: Haque, Md Nazmul, et al.
Published: (2026) -
Just another copy and paste? Comparing the security vulnerabilities of ChatGPT generated code and StackOverflow answers
by: Hamer, Sivana, et al.
Published: (2024) -
Trusting code in the wild: Exploring contributor reputation measures to review dependencies in the Rust ecosystem
by: Hamer, Sivana, et al.
Published: (2024) -
An Alignment Between the CRA's Essential Requirements and the ATT&CK's Mitigations
by: Ruohonen, Jukka, et al.
Published: (2025)