Using cyber threat intelligence to support adversary understanding applied to the Russia-Ukraine conflict
Abstract
In military organizations, Cyber Threat Intelligence (CTI) supports cyberspace operations by providing the commander with essential information about the adversary, their capabilities and objectives as they operate through cyberspace. This paper, combines CTI with the MITRE ATT&CK framework in order to establish an adversary profile. In addition, it identifies the characteristics of the attack phase by analyzing the WhisperGate operation that occurred in Ukraine in January 2022, and suggests the minimum essential measures for defense.
- Publication:
-
arXiv e-prints
- Pub Date:
- May 2022
- DOI:
- 10.48550/arXiv.2205.03469
- arXiv:
- arXiv:2205.03469
- Bibcode:
- 2022arXiv220503469S
- Keywords:
-
- Computer Science - Cryptography and Security
- E-Print:
- in Spanish language