The project develops advanced AI solutions for cyber threat detection
The project develops advanced AI solutions for cyber threat detection
The research activities of project NFP401101C360: Research and Development of Advanced Artificial Intelligence Solutions for the Detection of Cyber Threats and Defense against Sophisticated Attacks, introduce novel approaches to the detection of sophisticated cyber threats through the application of machine learning and behavioral analysis of cyberattacks.
The project focuses on the development of methods and tools enabling the reliable detection of advanced cyberattacks, particularly those involving exploitation, lateral movement, and privilege escalation in accordance with the MITRE ATT&CK framework. The research also investigates the limitations of current detection approaches and explores opportunities to improve their accuracy under real-world conditions.
An important component of the project is the comprehensive analysis of techniques, sub-techniques, and procedures (TTPs). This includes identifying their characteristic manifestations and examining the tools employed in the execution of cyberattacks. The project also encompasses the simulation of cyber incidents in a secure testing environment and the validation of various detection scenarios.
Another research area is the behavioral analysis of cyberattacks based on forensic and network data. The objective is to identify Indicators of Compromise (IoCs) and Indicators of Behavior (IoBs), as well as to determine operating system and network communication parameters that can contribute to more effective cyber threat detection.
A significant aspect of the project is the design of new models based on machine learning, artificial intelligence, and mathematical modelling. These models are intended for anomaly and attack detection across multiple stages of system compromise. Particular attention is devoted to optimizing the performance of detection models with an emphasis on accuracy, sensitivity, and reduced computational requirements.
Co-financed by the European Union through the Slovakia Programme under project No. NFP401101C360: Research and development of advanced artificial intelligence solutions for the detection of cyber threats and defense against sophisticated attacks.
