
handle: 11441/159406
En la actualidad, la ciberseguridad es un aspecto crítico debido a la complejidad creciente de los incidentes. Por ello son necesarios sistemas que identifiquen y contrarresten los riesgos eficazmente. En esta propuesta se presenta un sistema de aprendizaje automático supervisado capaz de analizar registros de tráfico para caracterizar técnicas y tácticas MITRE ATT&CK. A partir de esa identificación, se almacena en una ontología que actúa como base de conocimiento y tiene la capacidad de razonamiento necesaria para la toma de decisiones y recomendación de contramedidas. Los resultados obtenidos permiten identificar correctamente una serie de tácticas y técnicas y proporcionar las recomendaciones específicas de MITRE para reaccionar frente a los incidentes, ofreciendo una respuesta optimizada ante incidentes de seguridad, fortaleciendo la seguridad en las organizaciones, contribuyendo en los procesos de gestión de riesgo.
Ciberseguridad, Telecomunicaciones, TTps, Contramedidas, ATT&CK, Aprendizaje automático, MITRE
Ciberseguridad, Telecomunicaciones, TTps, Contramedidas, ATT&CK, Aprendizaje automático, MITRE
| selected citations These citations are derived from selected sources. This is an alternative to the "Influence" indicator, which also reflects the overall/total impact of an article in the research community at large, based on the underlying citation network (diachronically). | 0 | |
| popularity This indicator reflects the "current" impact/attention (the "hype") of an article in the research community at large, based on the underlying citation network. | Average | |
| influence This indicator reflects the overall/total impact of an article in the research community at large, based on the underlying citation network (diachronically). | Average | |
| impulse This indicator reflects the initial momentum of an article directly after its publication, based on the underlying citation network. | Average |
