Adversary Emulation with MITRE ATT&CK

Adversary Emulation with MITRE ATT&CK

by Drinor Selmanaj
Publication Date: 25/11/2024

Share This eBook:

  $51.99

By incorporating cyber threat intelligence, adversary emulation provides a form of cybersecurity assessment that mimics advanced persistent threat (APT) tactics, techniques, and procedures (TTPs). This comprehensive guide introduces an empirical approach with strategies and processes collected over a decade of experience in the cybersecurity field. You'll learn to assess resilience against coordinated and stealthy threat actors capable of harming an organization.


Author Drinor Selmanaj demonstrates adversary emulation for offensive operators and defenders using practical examples and exercises that actively model adversary behavior. Each emulation plan includes different hands-on scenarios, such as smash-and-grab or slow-and-deliberate. This book uses the MITRE ATT&CK knowledge base as a foundation to describe and categorize TTPs based on real-world observations, and provides a common language that's standardized and accessible to everyone.




  • Map Cyber Threat Intelligence to ATT&CK


    Define Adversary Emulation goals and objectives


    Research Adversary Emulation TTPs using ATT&CK knowledge base


    Plan Adversary Emulation activity


    Implement Adversary tradecraft


    Conduct Adversary Emulation


    Communicate Adversary Emulation findings


    Automate Adversary Emulation to support repeatable testing


    Execute FIN6, APT3, and APT29 emulation plans



ISBN:
9781098143725
9781098143725
Category:
Network security
Publication Date:
25-11-2024
Language:
English
Publisher:
O'Reilly Media

This item is delivered digitally

Reviews

Be the first to review Adversary Emulation with MITRE ATT&CK.