Enhancing cybersecurity resilience through advanced red-teaming exercises and MITRE ATT&CK framework integration: A paradigm shift in cybersecurity assessment
As cybersecurity threats evolve alarmingly, conventional defense strategies are becoming increasingly ineffective. In response to this urgent challenge, our study presents a transformative approach to red-teaming exercises by integrating the MITRE ATT&CK framework. This innovative integration le...
Saved in:
| Main Authors: | , , , |
|---|---|
| Format: | Article |
| Language: | English |
| Published: |
KeAi Communications Co., Ltd.
2025-12-01
|
| Series: | Cyber Security and Applications |
| Subjects: | |
| Online Access: | http://www.sciencedirect.com/science/article/pii/S2772918424000432 |
| Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
| _version_ | 1850251292978446336 |
|---|---|
| author | Semi Yulianto Benfano Soewito Ford Lumban Gaol Aditya Kurniawan |
| author_facet | Semi Yulianto Benfano Soewito Ford Lumban Gaol Aditya Kurniawan |
| author_sort | Semi Yulianto |
| collection | DOAJ |
| description | As cybersecurity threats evolve alarmingly, conventional defense strategies are becoming increasingly ineffective. In response to this urgent challenge, our study presents a transformative approach to red-teaming exercises by integrating the MITRE ATT&CK framework. This innovative integration leverages real-world attacker tactics and behaviors to create highly realistic scenarios that rigorously test defenses and uncover previously unidentified vulnerabilities. Our comprehensive evaluation demonstrates a significant enhancement in the realism and effectiveness of red-teaming, leading to improved vulnerability identification and the generation of actionable insights for proactive remediation. This study uniquely contributes by providing a structured, data-driven methodology that aligns current defenses with emerging threat tactics and promotes continuous improvement in cybersecurity resilience. Such advancements are essential for organizations seeking to stay ahead of attackers and maintain robust cyber defenses in dynamic threat environments. The significance of this study lies in offering a structured approach to strengthen cybersecurity resilience against evolving threats and providing a model for continual defense enhancement. Future research should investigate the impact of this integration on long-term cybersecurity strategies. |
| format | Article |
| id | doaj-art-e7a08e20745c46f59242527e4a539de7 |
| institution | OA Journals |
| issn | 2772-9184 |
| language | English |
| publishDate | 2025-12-01 |
| publisher | KeAi Communications Co., Ltd. |
| record_format | Article |
| series | Cyber Security and Applications |
| spelling | doaj-art-e7a08e20745c46f59242527e4a539de72025-08-20T01:57:55ZengKeAi Communications Co., Ltd.Cyber Security and Applications2772-91842025-12-01310007710.1016/j.csa.2024.100077Enhancing cybersecurity resilience through advanced red-teaming exercises and MITRE ATT&CK framework integration: A paradigm shift in cybersecurity assessmentSemi Yulianto0Benfano Soewito1Ford Lumban Gaol2Aditya Kurniawan3Corresponding author.; Computer Science Department, Binus Graduate Program, Doctor of Computer Science, Bina Nusantara University, Jakarta 11480, IndonesiaComputer Science Department, Binus Graduate Program, Doctor of Computer Science, Bina Nusantara University, Jakarta 11480, IndonesiaComputer Science Department, Binus Graduate Program, Doctor of Computer Science, Bina Nusantara University, Jakarta 11480, IndonesiaComputer Science Department, Binus Graduate Program, Doctor of Computer Science, Bina Nusantara University, Jakarta 11480, IndonesiaAs cybersecurity threats evolve alarmingly, conventional defense strategies are becoming increasingly ineffective. In response to this urgent challenge, our study presents a transformative approach to red-teaming exercises by integrating the MITRE ATT&CK framework. This innovative integration leverages real-world attacker tactics and behaviors to create highly realistic scenarios that rigorously test defenses and uncover previously unidentified vulnerabilities. Our comprehensive evaluation demonstrates a significant enhancement in the realism and effectiveness of red-teaming, leading to improved vulnerability identification and the generation of actionable insights for proactive remediation. This study uniquely contributes by providing a structured, data-driven methodology that aligns current defenses with emerging threat tactics and promotes continuous improvement in cybersecurity resilience. Such advancements are essential for organizations seeking to stay ahead of attackers and maintain robust cyber defenses in dynamic threat environments. The significance of this study lies in offering a structured approach to strengthen cybersecurity resilience against evolving threats and providing a model for continual defense enhancement. Future research should investigate the impact of this integration on long-term cybersecurity strategies.http://www.sciencedirect.com/science/article/pii/S2772918424000432CybersecurityCyber resilienceRed-teaming exercisesMITRE ATT&CK frameworkContinuous defense improvement |
| spellingShingle | Semi Yulianto Benfano Soewito Ford Lumban Gaol Aditya Kurniawan Enhancing cybersecurity resilience through advanced red-teaming exercises and MITRE ATT&CK framework integration: A paradigm shift in cybersecurity assessment Cyber Security and Applications Cybersecurity Cyber resilience Red-teaming exercises MITRE ATT&CK framework Continuous defense improvement |
| title | Enhancing cybersecurity resilience through advanced red-teaming exercises and MITRE ATT&CK framework integration: A paradigm shift in cybersecurity assessment |
| title_full | Enhancing cybersecurity resilience through advanced red-teaming exercises and MITRE ATT&CK framework integration: A paradigm shift in cybersecurity assessment |
| title_fullStr | Enhancing cybersecurity resilience through advanced red-teaming exercises and MITRE ATT&CK framework integration: A paradigm shift in cybersecurity assessment |
| title_full_unstemmed | Enhancing cybersecurity resilience through advanced red-teaming exercises and MITRE ATT&CK framework integration: A paradigm shift in cybersecurity assessment |
| title_short | Enhancing cybersecurity resilience through advanced red-teaming exercises and MITRE ATT&CK framework integration: A paradigm shift in cybersecurity assessment |
| title_sort | enhancing cybersecurity resilience through advanced red teaming exercises and mitre att ck framework integration a paradigm shift in cybersecurity assessment |
| topic | Cybersecurity Cyber resilience Red-teaming exercises MITRE ATT&CK framework Continuous defense improvement |
| url | http://www.sciencedirect.com/science/article/pii/S2772918424000432 |
| work_keys_str_mv | AT semiyulianto enhancingcybersecurityresiliencethroughadvancedredteamingexercisesandmitreattckframeworkintegrationaparadigmshiftincybersecurityassessment AT benfanosoewito enhancingcybersecurityresiliencethroughadvancedredteamingexercisesandmitreattckframeworkintegrationaparadigmshiftincybersecurityassessment AT fordlumbangaol enhancingcybersecurityresiliencethroughadvancedredteamingexercisesandmitreattckframeworkintegrationaparadigmshiftincybersecurityassessment AT adityakurniawan enhancingcybersecurityresiliencethroughadvancedredteamingexercisesandmitreattckframeworkintegrationaparadigmshiftincybersecurityassessment |