It appears you don't have support to open PDFs in this web browser. To view this file, Open with your PDF reader
Abstract
The increasing sophistication of technology systems makes traditional threat modeling difficult to implement and scale. This is especially true for small organizations that lack resources and expertise. This research develops and evaluates AegisShield, a generative AI-enhanced threat modeling tool that implements frameworks such as STRIDE and MITRE ATT&CK to automate threat model generation and provide systematic assessments. By integrating real-time threat intelligence from sources including the National Vulnerability Database and AlienVault’s Open Threat Exchange, AegisShield produces streamlined, accurate, and accessible threat descriptions. Our assessment of 243 threats from 15 case studies and over 8,000 AI-generated threats shows that AegisShield significantly reduces complexity (p < 0.001), produces outputs that are semantically aligned with expert-developed threats (p < 0.05), and achieves a statistically validated 85.4% success rate in mapping threats to MITRE ATT&CK techniques (p < 0.001). Simplifying threat modeling through automation and standardization helps under-resourced organizations get ahead of risks. As a result, this promotes a wider adoption of secure-by-design principles and encourages a more secure ecosystem.
You have requested "on-the-fly" machine translation of selected content from our databases. This functionality is provided solely for your convenience and is in no way intended to replace human translation. Show full disclaimer
Neither ProQuest nor its licensors make any representations or warranties with respect to the translations. The translations are automatically generated "AS IS" and "AS AVAILABLE" and are not retained in our systems. PROQUEST AND ITS LICENSORS SPECIFICALLY DISCLAIM ANY AND ALL EXPRESS OR IMPLIED WARRANTIES, INCLUDING WITHOUT LIMITATION, ANY WARRANTIES FOR AVAILABILITY, ACCURACY, TIMELINESS, COMPLETENESS, NON-INFRINGMENT, MERCHANTABILITY OR FITNESS FOR A PARTICULAR PURPOSE. Your use of the translations is subject to all use restrictions contained in your Electronic Products License Agreement and by using the translation functionality you agree to forgo any and all claims against ProQuest or its licensors for your use of the translation functionality and any output derived there from. Hide full disclaimer