← Back to case studies
Research / open source·2024·Thesis Intern

Threat Hunting Framework with MITRE Caldera & STIX-Shifter

MITRE CalderaPythonSTIX-ShifterMITRE ATT&CK

Context

Threat hunting programs often stay reactive: teams react to alerts rather than proactively searching for adversary behavior that evades existing detection rules. My thesis work, done during an internship, tackled this by building a repeatable, technology-agnostic hunting methodology grounded in adversary emulation.

What I did

Outcome

View the merged contribution on GitHub →