Cyber Kill Chain based Threat Taxonomy and its Application on Cyber Common Operational Picture

التفاصيل البيبلوغرافية
العنوان: Cyber Kill Chain based Threat Taxonomy and its Application on Cyber Common Operational Picture
المؤلفون: Park Moosung, Hyun-Sook Jeong, Koo Sungmo, Haengrok Oh, Insung Han, Sungyoung Clio, Jinsoo Kim
المصدر: CyberSA
بيانات النشر: IEEE, 2018.
سنة النشر: 2018
مصطلحات موضوعية: Adversarial system, Advanced persistent threat, Situation awareness, Computer science, Kill chain, Taxonomy (general), Computer security, computer.software_genre, Cyberspace, computer, Phase (combat), Common operational picture
الوصف: Over a decade, intelligent and persistent forms of cyber threats have been damaging to the organizations’ cyber assets and missions. In this paper, we analyze current cyber kill chain models that explain the adversarial behavior to perform advanced persistent threat (APT) attacks, and propose a cyber kill chain model that can be used in view of cyber situation awareness. Based on the proposed cyber kill chain model, we propose a threat taxonomy that classifies attack tactics and techniques for each attack phase using CAPEC, ATT&CK that classify the attack tactics, techniques, and procedures (TTPs) proposed by MITRE. We also implement a cyber common operational picture (CyCOP) to recognize the situation of cyberspace. The threat situation can be represented on the CyCOP by applying cyber kill chain based threat taxonomy.
DOI: 10.1109/cybersa.2018.8551383
URL الوصول: https://explore.openaire.eu/search/publication?articleId=doi_________::d202446b50869bd220f6839afb780f01
https://doi.org/10.1109/cybersa.2018.8551383
رقم الانضمام: edsair.doi...........d202446b50869bd220f6839afb780f01
قاعدة البيانات: OpenAIRE
الوصف
DOI:10.1109/cybersa.2018.8551383