7 papers
Mining Temporal Attack Patterns from Cyberthreat Intelligence Reports
Md Rayhanur Rahman, Brandon Wroblewski, Quinn Matthews +3
Defending from cyberattacks requires practitioners to operate on high-level adversary behavior. Cyberthreat intelligence (CTI) reports on past cyberattack incidents describe the ch…
Attackers reveal their arsenal: An investigation of adversarial techniques in CTI reports
Md Rayhanur Rahman, Setu Kumar Basak, Rezvan Mahdavi Hezaveh +1
Context: Cybersecurity vendors often publish cyber threat intelligence (CTI) reports, referring to the written artifacts on technical and forensic analysis of the techniques used b…
An investigation of security controls and MITRE ATT\&CK techniques
Md Rayhanur Rahman, Laurie Williams
Attackers utilize a plethora of adversarial techniques in cyberattacks to compromise the confidentiality, integrity, and availability of the target organizations and systems. Infor…
Investigating co-occurrences of MITRE ATT\&CK Techniques
Md Rayhanur Rahman, Laurie Williams
Cyberattacks use adversarial techniques to bypass system defenses, persist, and eventually breach systems. The MITRE ATT\&CK framework catalogs a set of adversarial techniques and…
From Threat Reports to Continuous Threat Intelligence: A Comparison of Attack Technique Extraction Methods from Textual Artifacts
Md Rayhanur Rahman, Laurie Williams
The cyberthreat landscape is continuously evolving. Hence, continuous monitoring and sharing of threat intelligence have become a priority for organizations. Threat reports, publis…
Security Smells in Ansible and Chef Scripts: A Replication Study
Akond Rahman, Md. Rayhanur Rahman, Chris Parnin +1
Context: Security smells are recurring coding patterns that are indicative of security weakness, and require further inspection. As infrastructure as code (IaC) scripts, such as An…