International Peer-Reviewed JournalOpen AccessISSN 2456-8880
irejournals@gmail.com+91-7433024337

Home / Current Issue / Paper 1707000

1707000 Vol 8 · Issue 7 Download Paper

Adversarial Tactics, Techniques, and Procedures (TTPs): A Deep Dive into Modern Cyber Attacks

Eze Esther Chinwe Chisom Elizabeth Alozie

Subject area: Science,Engineering and Technology  ·  Area of research: ICT

Abstract

The rapidly evolving cybersecurity landscape presents complex challenges as adversaries adopt increasingly sophisticated Tactics, Techniques, and Procedures (TTPs) to exploit vulnerabilities across digital infrastructures. This study provides a comprehensive analysis of adversarial TTPs, emphasizing their critical role in modern cyberattacks and their integration into cybersecurity frameworks. The research begins by defining TTP components?tactics, techniques, and procedures?and examines their historical evolution, from rudimentary attacks in the 1980s to today?s advanced persistent threats and AI-driven strategies. Through case studies, including the SolarWinds supply chain attack and Colonial Pipeline ransomware incident, the study demonstrates how TTPs are employed across different stages of the cyber kill chain, from initial access to impact. Furthermore, the research highlights the utility of frameworks such as MITRE ATT&CK and the Cyber Kill Chain in categorizing and countering these threats. Emerging trends, such as the increasing attack surface of IoT devices, the role of AI in adversarial and defensive operations, and the implications of quantum computing, are explored. The study concludes by addressing the challenges of combating zero-day exploits, evasion techniques, and the global shortage of skilled professionals. It advocates for a proactive, multi-faceted approach combining threat intelligence, advanced detection systems, organizational training, and international collaboration to enhance resilience against modern and future cyber threats. This analysis underscores the imperative for organizations and policymakers to prioritize understanding and mitigating adversarial TTPs to safeguard critical assets and infrastructure.

Keywords

Cybersecurity, Tactics, Techniques, and Procedures (TTPs), Adversarial Behavior, MITRE ATT&CK Framework, Cyber Kill Chain, Advanced Persistent Threats (APTs), Supply Chain Attacks, Ransomware, Threat Intelligence, Zero-Day Exploits, Phishing Campaigns, Internet of Things (IoT), Artificial Intelligence (AI) in Cybersecurity, Quantum Computing Risks

References

[1] CISA (2021). Colonial Pipeline Cyberattack Summary. Cybersecurity and Infrastructure Security Agency. Retrieved from https://www.cisa.gov

[2] FireEye (2021). Threat Research: SolarWinds Compromise Overview. Retrieved from https://www.fireeye.com

[3] CrowdStrike (2022). Global Threat Report. Retrieved from https://www.crowdstrike.com

[4] Kaspersky (2021). Advanced Persistent Threats: Threat Intelligence Report. Retrieved from https://www.kaspersky.com

[5] MITRE (2022). MITRE ATT&CK: Adversarial Tactics, Techniques, and Common Knowledge. Retrieved from https://attack.mitre.org

[6] BALOGUN, H. O., & ADANIGBO, O. S. (2024). Implementing Cyber Threat Intelligence and Monitoring in 5G O-RAN: Proactive Protection Against Evolving Threats.

[7] Lockheed Martin (2015). Cyber Kill Chain Framework. Retrieved from https://www.lockheedmartin.com

[8] Caltagirone, S., Pendergast, A., & Betz, C. (2013). The Diamond Model of Intrusion Analysis. Center for Cyber Intelligence Analysis and Threat Research.

[9] Hutchins, E. M., Cloppert, M. J., & Amin, R. M. (2011). Intelligence-Driven Computer Network Defense Informed by Analysis of Adversary Campaigns and Intrusion Kill Chains. Leading Issues in Information Warfare & Security Research, 1(1), 80.

[10] Legoy, V., Caselli, M., Seifert, C., & Peter, A. (2020). Automated Retrieval of ATT&CK Tactics and Techniques for Cyber Threat Reports. arXiv preprint arXiv:2004.14322.

[11] Rahman, M. R., Basak, S. K., Hezaveh, R. M., & Williams, L. (2024). Attackers Reveal Their Arsenal: An Investigation of Adversarial Techniques in CTI Reports. arXiv preprint arXiv:2401.01865.

[12] Al-Sada, B., Sadighian, A., & Oligeri, G. (2023). MITRE ATT&CK: State of the Art and Way Forward. arXiv preprint arXiv:2308.14016.

[13] Al-Shaer, R., Spring, J. M., & Christou, E. (2020). Learning the Associations of MITRE ATT&CK Adversarial Techniques. arXiv preprint arXiv:2005.01654.

[14] Husari, G., Al-Shaer, E., Rahman, M. A., & Baddar, S. (2017). TTPDrill: Automatic and Accurate Extraction of Threat Actions from Unstructured Text of CTI Reports. Proceedings of the 33rd Annual Computer Security Applications Conference, 103–115.

[15] Kordy, B., Kordy, P., Mauw, S., & Schweitzer, P. (2014). ADTool: Security Analysis with Attack–Defense Trees. Proceedings of the 10th International Conference on Quantitative Evaluation of Systems, 173–176.

[16] Mavroeidis, V., & Bromander, S. (2017). Cyber Threat Intelligence Model: An Evaluation of Taxonomies, Sharing Standards, and Ontologies within Cyber Threat Intelligence. Proceedings of the European Intelligence and Security Informatics Conference, 91–98.

[17] Sauerwein, C., Sillaber, C., Mussmann, A., & Breu, R. (2017). Threat Intelligence Sharing Platforms: An Exploratory Study of Software Vendors and Research Perspectives. Proceedings of the 13th International Conference on Wirtschaftsinformatik, 837–851.

How to cite this paper

Eze Esther Chinwe, Chisom Elizabeth Alozie "Adversarial Tactics, Techniques, and Procedures (TTPs): A Deep Dive into Modern Cyber Attacks" Iconic Research And Engineering Journals Volume 8 Issue 7 2025 Page 552-561
Eze Esther Chinwe, Chisom Elizabeth Alozie "Adversarial Tactics, Techniques, and Procedures (TTPs): A Deep Dive into Modern Cyber Attacks" Iconic Research And Engineering Journals, vol. 8, no. 7, Jan. 2025
Eze Esther Chinwe, Chisom Elizabeth Alozie (2025). Adversarial Tactics, Techniques, and Procedures (TTPs): A Deep Dive into Modern Cyber Attacks. Iconic Research And Engineering Journals, 8(7).
Eze Esther Chinwe, Chisom Elizabeth Alozie "Adversarial Tactics, Techniques, and Procedures (TTPs): A Deep Dive into Modern Cyber Attacks" Iconic Research And Engineering Journals, vol. 8, no. 7, Jan. 2025.
@article{1707000,
      author = {Eze Esther Chinwe, Chisom Elizabeth Alozie},
      title = {Adversarial Tactics, Techniques, and Procedures (TTPs): A Deep Dive into Modern Cyber Attacks},
      journal = {Iconic Research And Engineering Journals},
      year = {2025},
      volume = {8},
      number = {7},
      pages = {552-561},
      issn = {2456-8880},
      url = {https://www.irejournals.com/formatedpaper/1707000.pdf},
      abstract = {The rapidly evolving cybersecurity landscape presents complex challenges as adversaries adopt increasingly sophisticated Tactics, Techniques, and Procedures (TTPs) to exploit vulnerabilities across digital infrastructures. This study provides a comprehensive analysis of adversarial TTPs, emphasizing their critical role in modern cyberattacks and their integration into cybersecurity frameworks. The research begins by defining TTP components?tactics, techniques, and procedures?and examines their historical evolution, from rudimentary attacks in the 1980s to today?s advanced persistent threats and AI-driven strategies. Through case studies, including the SolarWinds supply chain attack and Colonial Pipeline ransomware incident, the study demonstrates how TTPs are employed across different stages of the cyber kill chain, from initial access to impact. Furthermore, the research highlights the utility of frameworks such as MITRE ATT&CK and the Cyber Kill Chain in categorizing and countering these threats. Emerging trends, such as the increasing attack surface of IoT devices, the role of AI in adversarial and defensive operations, and the implications of quantum computing, are explored. The study concludes by addressing the challenges of combating zero-day exploits, evasion techniques, and the global shortage of skilled professionals. It advocates for a proactive, multi-faceted approach combining threat intelligence, advanced detection systems, organizational training, and international collaboration to enhance resilience against modern and future cyber threats. This analysis underscores the imperative for organizations and policymakers to prioritize understanding and mitigating adversarial TTPs to safeguard critical assets and infrastructure.},
      keywords = {Cybersecurity, Tactics, Techniques, and Procedures (TTPs), Adversarial Behavior, MITRE ATT&CK Framework, Cyber Kill Chain, Advanced Persistent Threats (APTs), Supply Chain Attacks, Ransomware, Threat Intelligence, Zero-Day Exploits, Phishing Campaigns, Internet of Things (IoT), Artificial Intelligence (AI) in Cybersecurity, Quantum Computing Risks},
      month = {January},
  }