Impact of AI on the Cyber Kill Chain: A Systematic Review

Journal article


Authors/Editors


Strategic Research Themes


Publication Details

Author listKazimierczak M., Habib N., Chan J.H., Thanapattheerakul T.

PublisherElsevier

Publication year2024

JournalHeliyon (2405-8440)

Volume number10

Issue number24

Start page1

End page21

Number of pages21

ISSN2405-8440

eISSN2405-8440

URLhttps://api.elsevier.com/content/abstract/scopus_id/85211036231

LanguagesEnglish-United States (EN-US)


View on publisher site


Abstract

The Cyber Kill Chain (CKC) defense model aims to assist subject matter experts in planning, identifying, and executing against cyber intrusion activity, by outlining seven stages required for adversaries to execute an attack. Recent advancements in Artificial Intelligence (AI) have empowered adversaries to execute sophisticated attacks to exploit system vulnerabilities. As a result, it is essential to consider how AI-based tools change the cyber threat landscape and affect the current standard CKC model. Thus, this study examines and categorizes how attackers use AI-based tools, and offers potential defense mechanisms. We conducted a systematic literature review of 62 papers published between 2013 and 2023 from the Web of Science and Google Scholar databases. Our findings indicate that AI-based tools are used most effectively in the initial stages of cyberattacks. However, we find that current defense tools are not designed to counter these sophisticated attacks during these stages. Thus, we provide insights to 1) highlight the changing threat landscape due to AI and 2) to guide the development of cyber defense mechanisms.


Keywords

Adversarial AIAI-based cyber attacksArtificial intelligence in cybersecurityCyber attacksCyber kill chaincybersecurityIntrusion/anomaly detection and malware mitigationSoftware and application securitySystems security


Last updated on 2025-05-01 at 00:00