Utility of ATT&CK for Penetration Testing - Research question: How many techniques directly applicable to
7
Existing Tools for ATT&CK
8
What tools do not exist...
9
Quick Aside on Student Competitions
10
Needs Requirement
11
ATT&CK Techniques Considered (2)
12
DLL Hello World
13
DLL Shenanigans
14
Payloads (1)
15
Deployment with Ansible
16
Technique Success?
17
Switching to Defense
18
Proposed Analytical Model
19
Example
20
Implementation
21
Model Success... or Lack Thereof
22
Confounding Variables
23
Future Work
24
QUESTIONS?
Description:
Learn about operationalizing the MITRE ATT&CK Framework in this conference talk from BSides Cleveland 2019. Explore the ATT&CK background, taxonomy, and its utility for penetration testing. Discover existing tools and identify gaps in the ATT&CK ecosystem. Delve into practical examples, including DLL techniques and payload deployment with Ansible. Examine the speaker's proposed analytical model for defense, its implementation, and potential confounding variables. Gain insights into future work and participate in a Q&A session to deepen your understanding of applying the ATT&CK framework in real-world scenarios.