Key Benefits
- Automated
- Efficient
- New Red Teamer Friendly
Key Technologies Used
- Artificial Intelligence (Meta Llama 3 AI)
- Vulnerability Scanner [Vulscan (for network services), LinPeas (for Linux), WinEnum (for Windows)]
- GitHub Repository (Atomic Red Team)
- Python
Project Background & Description
Our project, ATT&CK Synthesizer, is designed to streamline and enhance the work of red teamers by automating the simulation of cyberattacks based on the MITRE ATT&CK Framework. By integrating AI-driven automation and vulnerability scanning, it enables more accurate and efficient identification of potential security gaps.
This tool not only simplifies the simulation of tactics, techniques, and procedures (TTPs) used by adversaries but also automates the process of gathering critical information and generating payloads for exploitation. Ultimately, ATT&CK Synthesizer aims to help red teamers conduct more effective penetration tests, identify system vulnerabilities, and demonstrate the value of the MITRE ATT&CK Framework in real-world cybersecurity operations.
Project Team Members
Supervisor
Sayed Hamzah Alhabshe (Mr)
Industry Partner
Temasek Polytechnic