Závěrečná práce: Bc. Alex Herčko: Cybersecurity Sandbox for Attack Emulation, Detection, and Analysis
Diplomová práce
Cybersecurity Sandbox for Attack Emulation, Detection, and Analysis
Anotace
Študenti softwarového inžinierstva a odborníci z praxe budujú a konfigurovajú infraštruktúru, zriedka však majú praktické skúsenosti s pozorovaním, ako implementované obranné mechanizmy detekujú (alebo prehliadajú) reálne útoky. Táto diplomová práca navrhuje a implementuje kontajnerizované sandboxové prostredie, ktoré kombinuje poloautomatickú emuláciu útokov s detekciou na úrovni hostiteľských strojov …více
Abstract
Engineering students and operations professionals build and configure infrastructure, yet they rarely get hands-on experience observing how realistic attacks are detected (or missed) by implemented defenses. This thesis designs and implements a containerized cybersecurity sandbox that combines semi-automated attack emulation with host-level detection in a single interactive environment, intended for …více
Zadání práce
- Overview of adversary emulation and host-based detection, with emphasis on MITRE ATT&CK techniques and detection engineering.
- Design of a modular container architecture enabling flexible composition, isolation, data flows, and scenario execution across multiple hosts.
- Implementation of the sandbox and single-command deployment, including integration of Caldera and Wazuh with multiplatform support (AMD64, ARM64).
- Sandbox evaluation, focusing on MITRE ATT&CK-based testing, telemetry analysis, and assessment of detection coverage and resource consumption including image size and memory usage.
20. 5. 2026 09:15, prof. Ing. Pavel Čeleda, Ph.D., učo 206086
Práce na příbuzné téma
Seznam prací, které mají shodná klíčová slova.
-
Container-Based Testbed for Network Security Training
Vojtěch Štaffa -
Simplifying Technical Environment of Cybersecurity Hands-On Classes with Containers
Mgr. Tomáš Falešník -
Exploration of Red Team automation tools
Ing. Tomáš Kacvinský -
Workflow výpočtu korekce silového pole malých molekul
Mgr. Vladimír Višňovský -
Benchmark Orchestrator for Containerized Workloads
Ing. Jan Rodák -
Automatizace nasazení platformy pro bezpečnostní monitoring organizace s využitím umělé inteligence
Mgr. Michal Pavlíček -
Inovativní přístup k realizaci výpočtů na superpočítačových infrastrukturách
Mgr. Ján Štefkovič -
Web server scalable and extensible log management platform with Apache attacks detection module
Bc. Peter Hrvola, učo 445511




