Skip to content

A Lightweight Emulation Infrastructure for Behavioral Threat Modeling using MITRE ATT&CK

2026 · CITA-DW · pp. 93-101 · 0 citations · 15 references
Computer Science

TL;DR

Vuln_Box is proposed, a lightweight container-based Infrastructure-as-Code (IaC) laboratory powered by the kathará emulation engine that provides a granular behavioral threat model for defensive gap analysis and shows that the containerized approach drastically reduces resource overhead compared to traditional hypervisors and kubernetes clusters, democratizing access to advanced cybersecurity research.

View source

Similar papers

Conference Jul 2026

Chameleon: A Deception Defense Strategy Against LLM-Assisted Attacker in New Power Systems

As new power systems become increasingly dependent on cloud-supported cyber-physical systems, their openness and interconnectivity continue to increase, thereby exposing risk points for advanced persistent threats (APTs). Deception defense has been widely regarded as an effective proactive approach for mitigating APT t...

Ying Yao, Yiji Lin, Qinglin Yang et al. · 0 citations
Review Open access 2026

Large Language Model-Assisted Threat-Driven Testing System for Enhanced Cybersecurity Readiness

The proposed Large Language Model-Assisted Threat-Driven Testing System enables security teams, particularly resource-constrained organizations lacking dedicated red-team capabilities, to conduct high-fidelity threat simulation exercises aligned with current adversarial TTPs, without specialized AI expertise, thereby s...

Praise Emeka Nze, A. Ademuwagun, Muktar Bello et al. · 0 citations
Open access Aug 2026

A Stateful Fuzzing Methodology for Security Verification of 5G Core Equipment

A stateful security verification methodology that combines stateful fuzzing with specification-guided security verification of the NG Application Protocol between the radio access network and the 5G core is proposed.

Seungjoon Na, Hwankuk Kim · 0 citations
#cybersecurity Preprint Aug 2026

The Next Challenge for Agentic Cybersecurity: A Realistic, Contamination-Free Reverse Engineering Benchmark

SRE-Bench is introduced, the first realistic, contamination-free RE benchmark, and results indicate that strong source-code security capabilities do not yet transfer to binary analysis, highlighting RE as an important frontier for agentic cybersecurity and SRE-Bench as a rigorous testbed to measure progress.

J. Spence, Nicholas Assaderaghi, Feng Xiao et al. · 1 citation
Sep 2026

Implementing a Security Operations Baseline Through Process Tree Modeling for Network Security Situational Awareness

A novel NSSA framework based on process tree modeling and dynamic service-chain orchestration that significantly outperforms PCA and Basic Evolution in terms of true positive and false positive rates, while the dynamic service-chain mechanism ensures efficient resource utilization and rapid threat containment.

Si-Wei Li, Xiao-Dong Wei · 0 citations
Preprint Sep 2026

BlueSTAR: Tiered Agentic Architecture for Autonomous Cyber Defense

Cyber attacks are increasingly automated, narrowing the time available for human analysts to detect, reason about, and respond to intrusions. Large language models (LLMs) offer a promising foundation for autonomous cyber defense because they can correlate heterogeneous evidence and reason about previously unseen threat...

Simona Boboila, Xavier F. Cadet, Edward Koh et al. · 0 citations

We use cookies to run the site and, with your consent, for analytics and to show ads. See our Cookie Policy.