Methodology for Automating Attacking Agents in Cyber Range Training Platforms

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

Abstract

The world faces cyberattacks daily and the targets of these attacks are often critical infrastructure, including the healthcare sector. In addition, more than half of cybersecurity professionals lack the necessary knowledge to deploy the relevant countermeasures to these attacks. In this regard, there is no doubt that education and training in cybersecurity are essential to defend technological assets. That is why, in this context, it is easy to understand that Cyber Ranges play a crucial role since these tools provide the user with a hyper-realistic experience for quality training. Thanks to attack simulators, commonly Advanced Persistent Threats (APT) generators, those realistic defensive cyberexercises can be performed. To implement these components, a behavioral matrix is needed, marking the different stages used by a cybersecurity expert during an attack, e.g. reconnaissance, explotation, data exfiltration, etc. Since bringing the current methodologies to a hyper-realistic production environment is an inordinate challenge, a novel matrix will be designed from simulation environments for training. This new methodology will compact dependent phases and simplify similar stages to automatically. Furthermore, the contribution contains a logic that increases the reality of the attacks. Finally, a proof of concept is made to evaluate the purposes the contribution purses.

Original languageEnglish
Title of host publicationSecure and Resilient Digital Transformation of Healthcare - 1st Workshop, SUNRISE 2023, Proceedings
EditorsHabtamu Abie, Sandeep Pirbhulal, Vasileios Gkioulos, Sokratis Katsikas
PublisherSpringer Science and Business Media Deutschland GmbH
Pages90-109
Number of pages20
ISBN (Print)9783031558283
DOIs
Publication statusPublished - 1 Jan 2024
Event1st International Workshop on Secure and Resilient Digital Transformation of Healthcare, SUNRISE 2023 - Stavanger, Norway
Duration: 30 Nov 202330 Nov 2023

Publication series

NameCommunications in Computer and Information Science
Volume1884 CCIS
ISSN (Print)1865-0929
ISSN (Electronic)1865-0937

Conference

Conference1st International Workshop on Secure and Resilient Digital Transformation of Healthcare, SUNRISE 2023
Country/TerritoryNorway
CityStavanger
Period30/11/2330/11/23

Keywords

  • Advanced Persistent Threat
  • Attack methodology
  • Critical Infrastructure
  • Cyber Range
  • Cybersecurity

Fingerprint

Dive into the research topics of 'Methodology for Automating Attacking Agents in Cyber Range Training Platforms'. Together they form a unique fingerprint.

Cite this