Threat led advanced persistent threat penetration test

被引:0
|
作者
Masarweh A. [1 ]
Al-Saraireh J. [1 ]
机构
[1] King Hussein School of Computing Sciences, Princess Sumaya University for Technology, Amman
来源
关键词
advanced persistent threat; APT; CTI; cyber threat intelligence; penetration testing;
D O I
10.1504/IJSN.2022.125517
中图分类号
学科分类号
摘要
Cyber security attacks have been on the rise in recent years. One of the most destructive attacks are known as advanced persistent threat (APT) attacks which can inflict massive damages to a network. A common approach of testing the security of an IT infrastructure is a penetration test (PT), which identifies security flaws in a system. However, this approach covers only the present vulnerabilities in a system without minding any new potential ones that could harm such systems. The goal in this research paper is to implement an enhanced PT approach called threat led APT PT to test the security of a target network against present vulnerabilities. The enhanced PT approach presented in this research work resulted in significantly enhancing the security of a network up to 28.5%. The proposed PT approach is compared to other custom PT approaches, which failed to achieve the same results as the proposed approach. Copyright © 2022 Inderscience Enterprises Ltd.
引用
收藏
页码:203 / 219
页数:16
相关论文
共 50 条
  • [21] Advanced Persistent Threat Identification with Boosting and Explainable AI
    Hasan M.M.
    Islam M.U.
    Uddin J.
    [J]. SN Computer Science, 4 (3)
  • [22] Domain adaptation for Windows advanced persistent threat detection
    Coulter, Rory
    Zhang, Jun
    Pan, Lei
    Xiang, Yang
    [J]. Computers and Security, 2022, 112
  • [23] An automatic training system against Advanced Persistent Threat
    Iwata, Kazuki
    Nakamura, Yoshitaka
    Inamura, Hiroshi
    Takahashi, Osamu
    [J]. 2017 TENTH INTERNATIONAL CONFERENCE ON MOBILE COMPUTING AND UBIQUITOUS NETWORK (ICMU), 2017, : 57 - 58
  • [24] Advanced Persistent Threat intelligent profiling technique: A survey
    Tang, BinHui
    Wang, JunFeng
    Yu, Zhongkun
    Chen, Bohan
    Ge, Wenhan
    Yu, Jian
    Lu, TingTing
    [J]. COMPUTERS & ELECTRICAL ENGINEERING, 2022, 103
  • [25] Detecting Advanced Persistent Threat Malware Using Machine Learning-Based Threat Hunting
    Lin, Tien-Chih
    Guo, Cheng-Chung
    Yang, Chu -Sing
    [J]. PROCEEDINGS OF THE 18TH EUROPEAN CONFERENCE ON CYBER WARFARE AND SECURITY (ECCWS 2019), 2019, : 760 - 768
  • [26] MALARIA - PERSISTENT THREAT
    BRUCECHWATT, LJ
    [J]. PRACTITIONER, 1971, 207 (1238) : 143 - +
  • [27] MALARIA - A PERSISTENT THREAT
    BLOUNT, RE
    [J]. ANNALS OF INTERNAL MEDICINE, 1969, 70 (01) : 127 - +
  • [28] A System Dynamics Approach to Evaluate Advanced Persistent Threat Vectors
    Nicho, Mathew
    McDermott, Christopher D.
    Fakhry, Hussein
    Girija, Shini
    [J]. INTERNATIONAL JOURNAL OF INFORMATION SECURITY AND PRIVACY, 2023, 17 (01)
  • [29] A Risk Management Approach to Defending Against the Advanced Persistent Threat
    Yang, Lu-Xing
    Li, Pengdeng
    Yang, Xiaofan
    Tang, Yuan Yan
    [J]. IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2020, 17 (06) : 1163 - 1172
  • [30] Dynamic Defense Strategy against Advanced Persistent Threat with Insiders
    Hu, Pengfei
    Li, Hongxing
    Fu, Hao
    Cansever, Derya
    Mohapatra, Prasant
    [J]. 2015 IEEE CONFERENCE ON COMPUTER COMMUNICATIONS (INFOCOM), 2015,