Context-Aware Web Attack Detection in Open-Source SIEM Systems via MITRE ATT&CK-Enriched Behavioral Profiling
Fuente:
arXiv
Salvato in:
| Autori principali: | Alboushy, Badr, Jafar, Assef, Aljnidi, Mohamad, Disoki, Mohamad Bashar, Shaheed, Aref |
|---|---|
| Natura: | Preprint |
| Pubblicazione: |
2026
|
| Soggetti: | |
| Accesso online: | |
| Tags: |
Aggiungi Tag
Nessun Tag, puoi essere il primo ad aggiungerne!!
|
Documenti analoghi
MITRE ATT&CK Applications in Cybersecurity and The Way Forward
di: Jiang, Yuning, et al.
Pubblicazione: (2025)
di: Jiang, Yuning, et al.
Pubblicazione: (2025)
Your ATs to Ts: MITRE ATT&CK Attack Technique to P-SSCRM Task Mapping
di: Hamer, Sivana, et al.
Pubblicazione: (2025)
di: Hamer, Sivana, et al.
Pubblicazione: (2025)
Rule-ATT&CK Mapper (RAM): Mapping SIEM Rules to TTPs Using LLMs
di: Wudali, Prasanna N., et al.
Pubblicazione: (2025)
di: Wudali, Prasanna N., et al.
Pubblicazione: (2025)
A Proactive Decoy Selection Scheme for Cyber Deception using MITRE ATT&CK
di: Zambianco, Marco, et al.
Pubblicazione: (2024)
di: Zambianco, Marco, et al.
Pubblicazione: (2024)
Constructing Multi-label Hierarchical Classification Models for MITRE ATT&CK Text Tagging
di: Crossman, Andrew, et al.
Pubblicazione: (2026)
di: Crossman, Andrew, et al.
Pubblicazione: (2026)
Decoding the MITRE Engenuity ATT&CK Enterprise Evaluation: An Analysis of EDR Performance in Real-World Environments
di: Shen, Xiangmin, et al.
Pubblicazione: (2024)
di: Shen, Xiangmin, et al.
Pubblicazione: (2024)
Labeling NIDS Rules with MITRE ATT&CK Techniques: Machine Learning vs. Large Language Models
di: Daniel, Nir, et al.
Pubblicazione: (2024)
di: Daniel, Nir, et al.
Pubblicazione: (2024)
Enhancing cybersecurity defenses: a multicriteria decision-making approach to MITRE ATT&CK mitigation strategy
di: Mohamed, Ihab, et al.
Pubblicazione: (2024)
di: Mohamed, Ihab, et al.
Pubblicazione: (2024)
An Evaluation Framework for Network IDS/IPS Datasets: Leveraging MITRE ATT&CK and Industry Relevance Metrics
di: Tori, Adrita Rahman, et al.
Pubblicazione: (2025)
di: Tori, Adrita Rahman, et al.
Pubblicazione: (2025)
Operationalising Cyber Risk Management Using AI: Connecting Cyber Incidents to MITRE ATT&CK Techniques, Security Controls, and Metrics
di: Sherif, Emad, et al.
Pubblicazione: (2026)
di: Sherif, Emad, et al.
Pubblicazione: (2026)
An Alignment Between the CRA's Essential Requirements and the ATT&CK's Mitigations
di: Ruohonen, Jukka, et al.
Pubblicazione: (2025)
di: Ruohonen, Jukka, et al.
Pubblicazione: (2025)
KillChainGraph: ML Framework for Predicting and Mapping ATT&CK Techniques
di: Singh, Chitraksh, et al.
Pubblicazione: (2025)
di: Singh, Chitraksh, et al.
Pubblicazione: (2025)
ISADM: An Integrated STRIDE, ATT&CK, and D3FEND Model for Threat Modeling Against Real-world Adversaries
di: Hasan, Khondokar Fida, et al.
Pubblicazione: (2025)
di: Hasan, Khondokar Fida, et al.
Pubblicazione: (2025)
Security Logs to ATT&CK Insights: Leveraging LLMs for High-Level Threat Understanding and Cognitive Trait Inference
di: Hans, Soham, et al.
Pubblicazione: (2025)
di: Hans, Soham, et al.
Pubblicazione: (2025)
Predicting known Vulnerabilities from Attack News: A Transformer-Based Approach
di: Othman, Refat, et al.
Pubblicazione: (2026)
di: Othman, Refat, et al.
Pubblicazione: (2026)
Clustering doc2vec output for topic-dimensionality reduction: A MITRE ATT&CK calibration
di: Monnet, Nathan, et al.
Pubblicazione: (2024)
di: Monnet, Nathan, et al.
Pubblicazione: (2024)
ADMIn: Attacks on Dataset, Model and Input. A Threat Model for AI Based Software
di: Kumar, Vimal, et al.
Pubblicazione: (2024)
di: Kumar, Vimal, et al.
Pubblicazione: (2024)
Active Authentication via Korean Keystrokes Under Varying LLM Assistance and Cognitive Contexts
di: Roh, Dong Hyun, et al.
Pubblicazione: (2025)
di: Roh, Dong Hyun, et al.
Pubblicazione: (2025)
Unveiling the Vulnerability of Private Fine-Tuning in Split-Based Frameworks for Large Language Models: A Bidirectionally Enhanced Attack
di: Chen, Guanzhong, et al.
Pubblicazione: (2024)
di: Chen, Guanzhong, et al.
Pubblicazione: (2024)
An Adaptable Approach for Successful SIEM Adoption in Companies
di: Rosenberg, Maximilian, et al.
Pubblicazione: (2023)
di: Rosenberg, Maximilian, et al.
Pubblicazione: (2023)
ML Defender (aRGus NDR): An Open-Source Embedded ML NIDS for Botnet and Anomalous Traffic Detection in Resource-Constrained Organizations
di: Román, Alonso Isidoro
Pubblicazione: (2026)
di: Román, Alonso Isidoro
Pubblicazione: (2026)
RuleGenie: SIEM Detection Rule Set Optimization
di: Shukla, Akansha, et al.
Pubblicazione: (2025)
di: Shukla, Akansha, et al.
Pubblicazione: (2025)
Security Attack and Defense Strategies for Autonomous Agent Frameworks: A Layered Review with OpenClaw as a Case Study
di: Xu, Luyao, et al.
Pubblicazione: (2026)
di: Xu, Luyao, et al.
Pubblicazione: (2026)
Non-Linear Trajectory Modeling for Multi-Step Gradient Inversion Attacks in Federated Learning
di: Xia, Li, et al.
Pubblicazione: (2025)
di: Xia, Li, et al.
Pubblicazione: (2025)
Understanding, Implementing, and Supporting Security Assurance Cases in Safety-Critical Domains
di: Mohamad, Mazen
Pubblicazione: (2025)
di: Mohamad, Mazen
Pubblicazione: (2025)
Towards Understanding and Applying Security Assurance Cases for Automotive Systems
di: Mohamad, Mazen
Pubblicazione: (2024)
di: Mohamad, Mazen
Pubblicazione: (2024)
Expanding the Attack Scenarios of SAE J1939: A Comprehensive Analysis of Established and Novel Vulnerabilities in Transport Protocol
di: Lee, Hwejae, et al.
Pubblicazione: (2024)
di: Lee, Hwejae, et al.
Pubblicazione: (2024)
Density-aware Sample-specific Attack
di: Wang, Qiyuan, et al.
Pubblicazione: (2026)
di: Wang, Qiyuan, et al.
Pubblicazione: (2026)
Multi-Agent Honeypot-Based Request-Response Context Dataset for Improved SQL Injection Detection Performance
di: Yu, Hao, et al.
Pubblicazione: (2026)
di: Yu, Hao, et al.
Pubblicazione: (2026)
GateChain: A Blockchain Based Application for Country Entry-Exit Registry Management
di: Akkad, Mohamad, et al.
Pubblicazione: (2025)
di: Akkad, Mohamad, et al.
Pubblicazione: (2025)
Enhancing Energy Sector Resilience: Integrating Security by Design Principles
di: Shirtz, Dov, et al.
Pubblicazione: (2024)
di: Shirtz, Dov, et al.
Pubblicazione: (2024)
Optimisation of cyber insurance coverage with selection of cost effective security controls
di: Uuganbayar, Ganbayar, et al.
Pubblicazione: (2025)
di: Uuganbayar, Ganbayar, et al.
Pubblicazione: (2025)
The Vehicle May Be Sick: Denial of Diagnostic Services by Exploiting the CAN Transport Protocol
di: Baek, Seungjin, et al.
Pubblicazione: (2026)
di: Baek, Seungjin, et al.
Pubblicazione: (2026)
A Relevance Model for Threat-Centric Ranking of Cybersecurity Vulnerabilities
di: McCoy, Corren, et al.
Pubblicazione: (2024)
di: McCoy, Corren, et al.
Pubblicazione: (2024)
Rubber Mallet: A Study of High Frequency Localized Bit Flips and Their Impact on Security
di: Adiletta, Andrew, et al.
Pubblicazione: (2025)
di: Adiletta, Andrew, et al.
Pubblicazione: (2025)
I Know What You Said: Unveiling Hardware Cache Side-Channels in Local Large Language Model Inference
di: Gao, Zibo, et al.
Pubblicazione: (2025)
di: Gao, Zibo, et al.
Pubblicazione: (2025)
Rhea: Detecting Privilege-Escalated Evasive Ransomware Attacks Using Format-Aware Validation in the Cloud
di: Kim, Beom Heyn, et al.
Pubblicazione: (2026)
di: Kim, Beom Heyn, et al.
Pubblicazione: (2026)
SpyChain: Multi-Vector Supply Chain Attacks on Small Satellite Systems
di: Vanlyssel, Jack, et al.
Pubblicazione: (2025)
di: Vanlyssel, Jack, et al.
Pubblicazione: (2025)
Peak + Accumulation: A Proxy-Level Scoring Formula for Multi-Turn LLM Attack Detection
di: Corll, J Alex
Pubblicazione: (2026)
di: Corll, J Alex
Pubblicazione: (2026)
Towards Modeling Cybersecurity Behavior of Humans in Organizations
di: Kürtz, Klaas Ole
Pubblicazione: (2026)
di: Kürtz, Klaas Ole
Pubblicazione: (2026)
Documenti analoghi
-
MITRE ATT&CK Applications in Cybersecurity and The Way Forward
di: Jiang, Yuning, et al.
Pubblicazione: (2025) -
Your ATs to Ts: MITRE ATT&CK Attack Technique to P-SSCRM Task Mapping
di: Hamer, Sivana, et al.
Pubblicazione: (2025) -
Rule-ATT&CK Mapper (RAM): Mapping SIEM Rules to TTPs Using LLMs
di: Wudali, Prasanna N., et al.
Pubblicazione: (2025) -
A Proactive Decoy Selection Scheme for Cyber Deception using MITRE ATT&CK
di: Zambianco, Marco, et al.
Pubblicazione: (2024) -
Constructing Multi-label Hierarchical Classification Models for MITRE ATT&CK Text Tagging
di: Crossman, Andrew, et al.
Pubblicazione: (2026)