Dec. 8, 2022, 2:18 a.m. | Yashovardhan Sharma, Simon Birnbach, Ivan Martinovic

cs.CR updates on arXiv.org arxiv.org

MITRE ATT&CK is a widespread ontology that specifies tactics, techniques, and
procedures (TTPs) typical of malware behaviour, making it possible to exploit
such TTPs for malware identification. However, this is far from being an easy
task given that benign usage of software can also match some of these TTPs. In
this paper, we present RADAR, a system that can identify malicious behaviour in
network traffic in two stages: first, RADAR extracts MITRE ATT&CK TTPs from
arbitrary network traffic captures, and, …

att detection framework malware malware detection mitre mitre att&ck mitre att&ck framework network radar

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Information Security Engineers

@ D. E. Shaw Research | New York City

Security Solution Architect

@ Civica | London, England, United Kingdom

Information Security Officer (80-100%)

@ SIX Group | Zurich, CH

Cloud Information Systems Security Engineer

@ Analytic Solutions Group | Chantilly, Virginia, United States

SRE Engineer & Security Software Administrator

@ Talan | Mexico City, Spain