Comprehensive Advanced Persistent Threats Dataset

Abdussamad Syed;Boubakr Nour;Makan Pourzandi;Chadi Assi;Mourad Debbabi
{"title":"Comprehensive Advanced Persistent Threats Dataset","authors":"Abdussamad Syed;Boubakr Nour;Makan Pourzandi;Chadi Assi;Mourad Debbabi","doi":"10.1109/LNET.2025.3551989","DOIUrl":null,"url":null,"abstract":"Due to the complex nature of Advanced Persistent Threats (APTs) and their rapid evolvement, comprehensive datasets are needed to understand them. However, acquiring such datasets remains a challenge due to the lack of precise reports describing the attacks, realistic emulation, the extensive attack diversity, and concerns regarding data privacy. In this letter, we built a testbed for APTs and implemented 23 campaigns for 12 APTs using MITRE Caldera. For each campaign, we share the adversary profile, the abilities, the low-level telemetries, and the MITRE techniques. By making this comprehensive dataset openly accessible, our work supports academia and industry to strengthen cybersecurity research and develop robust defenses against the constantly evolving APTs.","PeriodicalId":100628,"journal":{"name":"IEEE Networking Letters","volume":"7 2","pages":"150-154"},"PeriodicalIF":0.0000,"publicationDate":"2025-03-17","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"IEEE Networking Letters","FirstCategoryId":"1085","ListUrlMain":"https://ieeexplore.ieee.org/document/10929738/","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0

Abstract

Due to the complex nature of Advanced Persistent Threats (APTs) and their rapid evolvement, comprehensive datasets are needed to understand them. However, acquiring such datasets remains a challenge due to the lack of precise reports describing the attacks, realistic emulation, the extensive attack diversity, and concerns regarding data privacy. In this letter, we built a testbed for APTs and implemented 23 campaigns for 12 APTs using MITRE Caldera. For each campaign, we share the adversary profile, the abilities, the low-level telemetries, and the MITRE techniques. By making this comprehensive dataset openly accessible, our work supports academia and industry to strengthen cybersecurity research and develop robust defenses against the constantly evolving APTs.
综合高级持续威胁数据集
由于高级持续威胁(apt)的复杂性及其快速演变,需要全面的数据集来了解它们。然而,由于缺乏描述攻击的精确报告、真实的仿真、广泛的攻击多样性以及对数据隐私的担忧,获取此类数据集仍然是一个挑战。在这封信中,我们建立了一个apt测试平台,并使用MITRE Caldera对12个apt实施了23个活动。对于每个战役,我们都会分享对手的资料、能力、低级遥测和MITRE技术。通过使这个全面的数据集公开访问,我们的工作支持学术界和工业界加强网络安全研究,并开发针对不断发展的apt的强大防御。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:604180095
Book学术官方微信