Structured CTI standards like ATT&CK describe adversary actions but lack the ordering, preconditions, and environmental details needed for direct multi-stage emulation, and a translation method can bridge this gap when assumptions are recorded.
InProceedings of the 2025 ACM SIGSAC Conference on Computer and Communications Security (CCS ’25)(Taipei, Taiwan)
2 Pith papers cite this work, alongside 4 external citations. Polarity classification is still indexing.
fields
cs.CR 2verdicts
CONDITIONAL 2representative citing papers
Integrating DDQN-based ransomware detection with multi-shard SISA enables privacy-compliant sample removal in 5-30 seconds while preserving F1 > 0.99 and limiting membership inference leakage.
citing papers explorer
-
The Procedural Semantics Gap in Structured CTI: A Measurement-Driven STIX Analysis for APT Emulation
Structured CTI standards like ATT&CK describe adversary actions but lack the ordering, preconditions, and environmental details needed for direct multi-stage emulation, and a translation method can bridge this gap when assumptions are recorded.
-
Auditable Machine Unlearning for Privacy-Compliant Ransomware Detection Using Multi-Shard SISA and Deep Reinforcement Learning
Integrating DDQN-based ransomware detection with multi-shard SISA enables privacy-compliant sample removal in 5-30 seconds while preserving F1 > 0.99 and limiting membership inference leakage.