Enhancing cybersecurity resilience through advanced red-teaming exercises and MITRE ATT&CK framework integration: A paradigm shift in cybersecurity assessment

As cybersecurity threats evolve alarmingly, conventional defense strategies are becoming increasingly ineffective. In response to this urgent challenge, our study presents a transformative approach to red-teaming exercises by integrating the MITRE ATT&CK framework. This innovative integration le...

Full description

Saved in:
Bibliographic Details
Main Authors: Semi Yulianto, Benfano Soewito, Ford Lumban Gaol, Aditya Kurniawan
Format: Article
Language:English
Published: KeAi Communications Co., Ltd. 2025-12-01
Series:Cyber Security and Applications
Subjects:
Online Access:http://www.sciencedirect.com/science/article/pii/S2772918424000432
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1850251292978446336
author Semi Yulianto
Benfano Soewito
Ford Lumban Gaol
Aditya Kurniawan
author_facet Semi Yulianto
Benfano Soewito
Ford Lumban Gaol
Aditya Kurniawan
author_sort Semi Yulianto
collection DOAJ
description As cybersecurity threats evolve alarmingly, conventional defense strategies are becoming increasingly ineffective. In response to this urgent challenge, our study presents a transformative approach to red-teaming exercises by integrating the MITRE ATT&CK framework. This innovative integration leverages real-world attacker tactics and behaviors to create highly realistic scenarios that rigorously test defenses and uncover previously unidentified vulnerabilities. Our comprehensive evaluation demonstrates a significant enhancement in the realism and effectiveness of red-teaming, leading to improved vulnerability identification and the generation of actionable insights for proactive remediation. This study uniquely contributes by providing a structured, data-driven methodology that aligns current defenses with emerging threat tactics and promotes continuous improvement in cybersecurity resilience. Such advancements are essential for organizations seeking to stay ahead of attackers and maintain robust cyber defenses in dynamic threat environments. The significance of this study lies in offering a structured approach to strengthen cybersecurity resilience against evolving threats and providing a model for continual defense enhancement. Future research should investigate the impact of this integration on long-term cybersecurity strategies.
format Article
id doaj-art-e7a08e20745c46f59242527e4a539de7
institution OA Journals
issn 2772-9184
language English
publishDate 2025-12-01
publisher KeAi Communications Co., Ltd.
record_format Article
series Cyber Security and Applications
spelling doaj-art-e7a08e20745c46f59242527e4a539de72025-08-20T01:57:55ZengKeAi Communications Co., Ltd.Cyber Security and Applications2772-91842025-12-01310007710.1016/j.csa.2024.100077Enhancing cybersecurity resilience through advanced red-teaming exercises and MITRE ATT&CK framework integration: A paradigm shift in cybersecurity assessmentSemi Yulianto0Benfano Soewito1Ford Lumban Gaol2Aditya Kurniawan3Corresponding author.; Computer Science Department, Binus Graduate Program, Doctor of Computer Science, Bina Nusantara University, Jakarta 11480, IndonesiaComputer Science Department, Binus Graduate Program, Doctor of Computer Science, Bina Nusantara University, Jakarta 11480, IndonesiaComputer Science Department, Binus Graduate Program, Doctor of Computer Science, Bina Nusantara University, Jakarta 11480, IndonesiaComputer Science Department, Binus Graduate Program, Doctor of Computer Science, Bina Nusantara University, Jakarta 11480, IndonesiaAs cybersecurity threats evolve alarmingly, conventional defense strategies are becoming increasingly ineffective. In response to this urgent challenge, our study presents a transformative approach to red-teaming exercises by integrating the MITRE ATT&CK framework. This innovative integration leverages real-world attacker tactics and behaviors to create highly realistic scenarios that rigorously test defenses and uncover previously unidentified vulnerabilities. Our comprehensive evaluation demonstrates a significant enhancement in the realism and effectiveness of red-teaming, leading to improved vulnerability identification and the generation of actionable insights for proactive remediation. This study uniquely contributes by providing a structured, data-driven methodology that aligns current defenses with emerging threat tactics and promotes continuous improvement in cybersecurity resilience. Such advancements are essential for organizations seeking to stay ahead of attackers and maintain robust cyber defenses in dynamic threat environments. The significance of this study lies in offering a structured approach to strengthen cybersecurity resilience against evolving threats and providing a model for continual defense enhancement. Future research should investigate the impact of this integration on long-term cybersecurity strategies.http://www.sciencedirect.com/science/article/pii/S2772918424000432CybersecurityCyber resilienceRed-teaming exercisesMITRE ATT&CK frameworkContinuous defense improvement
spellingShingle Semi Yulianto
Benfano Soewito
Ford Lumban Gaol
Aditya Kurniawan
Enhancing cybersecurity resilience through advanced red-teaming exercises and MITRE ATT&CK framework integration: A paradigm shift in cybersecurity assessment
Cyber Security and Applications
Cybersecurity
Cyber resilience
Red-teaming exercises
MITRE ATT&CK framework
Continuous defense improvement
title Enhancing cybersecurity resilience through advanced red-teaming exercises and MITRE ATT&CK framework integration: A paradigm shift in cybersecurity assessment
title_full Enhancing cybersecurity resilience through advanced red-teaming exercises and MITRE ATT&CK framework integration: A paradigm shift in cybersecurity assessment
title_fullStr Enhancing cybersecurity resilience through advanced red-teaming exercises and MITRE ATT&CK framework integration: A paradigm shift in cybersecurity assessment
title_full_unstemmed Enhancing cybersecurity resilience through advanced red-teaming exercises and MITRE ATT&CK framework integration: A paradigm shift in cybersecurity assessment
title_short Enhancing cybersecurity resilience through advanced red-teaming exercises and MITRE ATT&CK framework integration: A paradigm shift in cybersecurity assessment
title_sort enhancing cybersecurity resilience through advanced red teaming exercises and mitre att ck framework integration a paradigm shift in cybersecurity assessment
topic Cybersecurity
Cyber resilience
Red-teaming exercises
MITRE ATT&CK framework
Continuous defense improvement
url http://www.sciencedirect.com/science/article/pii/S2772918424000432
work_keys_str_mv AT semiyulianto enhancingcybersecurityresiliencethroughadvancedredteamingexercisesandmitreattckframeworkintegrationaparadigmshiftincybersecurityassessment
AT benfanosoewito enhancingcybersecurityresiliencethroughadvancedredteamingexercisesandmitreattckframeworkintegrationaparadigmshiftincybersecurityassessment
AT fordlumbangaol enhancingcybersecurityresiliencethroughadvancedredteamingexercisesandmitreattckframeworkintegrationaparadigmshiftincybersecurityassessment
AT adityakurniawan enhancingcybersecurityresiliencethroughadvancedredteamingexercisesandmitreattckframeworkintegrationaparadigmshiftincybersecurityassessment