On the detection of lateral movement through supervised machine learning and an open-source tool to create turnkey datasets from sysmon logs

C Smiliotopoulos, G Kambourakis… - International Journal of …, 2023 - Springer
Lateral movement (LM) is a principal, increasingly common, tactic in the arsenal of
advanced persistent threat (APT) groups and other less or more powerful threat actors. It …

Detecting lateral movement: A systematic survey

C Smiliotopoulos, G Kambourakis, C Kolias - Heliyon, 2024 - cell.com
Within both the cyber kill chain and MITRE ATT&CK frameworks, Lateral Movement (LM) is
defined as any activity that allows adversaries to progressively move deeper into a system in …

Assessing the detection of lateral movement through unsupervised learning techniques

C Smiliotopoulos, G Kambourakis, C Kolias… - Computers & …, 2025 - Elsevier
Lateral movement (LM) is an umbrella term for techniques through which attackers spread
from an entry point to the rest of the network. Typically, LM involves both pivoting through …