Session
Bringing Intelligence into Cyber Deception with MITRE ATT&CK
Deception has become a popular concept in security, but are we really fooling adversaries? Honeypots and other technical solutions often don’t align with what real adversaries do. This talk will examine how we can successfully deceive adversaries by using threat intelligence mapped to MITRE ATT&CK®.
In classical deception planning, intelligence serves a key role in understanding an adversary’s likely beliefs, expectations, and reactions, but this often hasn’t carried over into the cyber realm. In this talk, I’ll show how to bridge that gap and leverage ATT&CK for cyber deception planning. I’ll present a methodology for making decisions on where to focus deception resources based on adversary techniques and how to align deception capabilities with the expectations and visibility of real cyber threat actors. Attendees will learn how they can leverage cyber threat intelligence to deceive their adversaries and gain valuable new intelligence as they do so.

Adam Pennington
ATT&CK Lead - MITRE
Washington, District of Columbia, United States
Links
Please note that Sessionize is not responsible for the accuracy or validity of the data provided by speakers. If you suspect this profile to be fake or spam, please let us know.
Jump to top