T
traeai
Sign in

概念

MITRE ATT&CK

别名:ATT&CK

威胁行为者战术、技术与程序分类框架。

已跟踪 6 条高相关材料

TraeAI 观察

相关材料

已收录 6 条与 MITRE ATT&CK 相关的内容,按评分排序。

Hacker News Best 图标

Obsidian Plugin Was Abused to Deploy a Remote Access Trojan

Hacker News Best831 字 (约 4 分钟)
92

Security researchers identified a targeted campaign using Obsidian plugins to deliver the new PHANTOMPULSE RAT, which uses Ethereum blockchain for dynamic C2 resolution.

入选理由:PHANTOMPULSE RAT 利用以太坊区块链嵌入 C2 地址,实现抗封锁的远程控制机制

FeaturedArticle#Obsidian#RAT#Cybersecurity#Social Engineering#Ethereum中文
What we learned mapping a year’s worth of AI-enabled cyber threats

What we learned mapping a year’s worth of AI-enabled cyber threats

Anthropic News1236 字 (约 5 分钟)
87

Based on 832 banned accounts between March 2025 and March 2026, AI is shifting attackers from initial intrusion to post-compromise operations, sharply increasing threat levels; MITRE ATT&CK does not capture the chaining and autonomy enabled by AI, requiring updated frameworks and assessment methods.

入选理由:3%的攻击者用AI写恶意软件,AI在攻入后用于账户发现、横向移动等,提升威胁等级(6月33%升至56%)。

FeaturedArticle#AI Security#MITRE ATT&CK#Threat Intelligence#Cyber Threat Landscape#Claude Code英文
Updated Cyber Threat Actor Naming System

Updated Cyber Threat Actor Naming System

Google Cloud Blog504 字 (约 3 分钟)
85

Google威胁情报团队推出新命名系统,统一跟踪威胁行为者,提升情报分析效率。

入选理由:新系统采用双词密码命名法,如CASTLE(中国)/NEPTUNE(朝鲜)

FeaturedArticle#威胁情报#网络安全#Google#命名系统英文
Securing the future of AI agents

Securing the future of AI agents

Google DeepMind Blog1135 字 (约 5 分钟)
85

谷歌DeepMind提出AI控制路线图,通过系统级安全措施应对AI代理可能带来的风险,为行业提供参考。

入选理由:AI代理可能带来$2.9万亿经济价值,但需应对潜在风险。

FeaturedArticle#AI安全#DeepMind#AI控制#威胁建模英文
Elastic Blog 图标

Elastic Security 8.18 和 9.0 版本简化了预置 SIEM 检测规则的自定义流程,提升效率并减少重复工作。

入选理由:Elastic Security 提供了 1,300+ 预置检测规则,支持 MITRE ATT&CK 框架。

FeaturedArticle#Elastic Security#SIEM#MITRE ATT&CK#检测工程英文

跨材料问答 · MITRE ATT&CK

回答基于:MITRE ATT&CK 相关 6 条材料
    0 / 500

    AI may generate inaccurate information. Please verify important content.