题名: |
Detection Engineering in Industrial Control Systems. Ukraine 2016 Attack: Sandworm Team and Industroyer Case Study. |
作者: |
McFail, M; Hanna, J; Rebori-Carretero, D. |
摘要: |
In this document we discuss applying MITRE’s TTP Cyber Hunt for Mission Automation Protection (TCHAMP) threathunting methodology to Industrial Control System (ICS) environments. We are specifically focused on the Ukraine 2016attack by the Sandworm Team which caused widespread power outages and how the same Tactics, Techniques, andProcedures (TTPs) can be used against North American power distribution systems. |
总页数: |
87 pages |