Главная
Study mode:
on
1
Introduction
2
Techniques
3
Challenges
4
Attack to Structure
5
Threat Groups
6
Industry Examples
7
Implementation Tips
8
What does this get us
9
The biggest problem in detection
10
Detection based on indicators
11
Analytics
12
Splunk Search
13
Understanding the Attack
14
Being Realistic
15
Handling False Positives
16
Machine Learning
17
Feedback loops
18
Targeting detection
19
Focus on your priorities
20
Increasing amounts of data
21
Getting started
22
MITRE Attack
23
Questions
24
Similarities
25
Similar Attacks
26
Misattribution
27
Attack for attribution
28
Managing analytics
29
Unfetter
Description:
Explore a comprehensive conference talk on leveraging the MITRE ATT&CK framework to enhance threat intelligence and cyber defense capabilities. Delve into techniques, challenges, and industry examples while learning how to structure attacks, analyze threat groups, and implement effective detection strategies. Gain insights on handling false positives, utilizing machine learning, and creating feedback loops for improved targeting. Discover practical tips for getting started with MITRE ATT&CK, managing analytics, and addressing common issues such as misattribution and attack similarities. Enhance your understanding of cyber defense priorities and learn how to navigate the increasing amounts of data in the field.

ATT&CKing the Status Quo - Improving Threat Intel and Cyber Defense with MITRE ATT&CK

BSidesLV
Add to list