Home / Archives / Vol. 4 No. 4 / Articles
AI-Driven Adversarial Threat Simulation for Cyber-Defense Training
Kazi Kutubuddin Sayyad Liyakat
Professor, Department of Electronics and Telecommunication Engineering, Brahmdevdada Mane Institute of Technology, India.
Jeyashree Y
Associate Professor, Department of Electrical and Electronics Engineering, SRM Institute of Science and Technology, India.
Mohammed Saleh Al Ansari
Associate Professor, College of Engineering, Department of Chemical Engineering, University of Bahrain, India.
Keywords:
AI-Driven Threat Simulation, Adversarial Machine Learning, Reinforcement Learning for Cybersecurity, Cyber-Defense Training, MITRE ATT&CK Framework, Cyber Range Simulation, Multi-Agent Attack–Defense Modeling.
Abstract
The rising complexity of the contemporary cyber threats has created an urgent demand of smart, adaptive and realistic systems of cyber-defense training that can equip the defenders to operate in the dynamic adversarial environments. Outdated signature-focused or policy-oriented deterrence methods do not advise the elasticity of state-of-the-array persistent threats (APTs) and evasive behavior. As a step towards overcoming these constraints, the present paper suggests an AI-Based Adversarial Threat Simulation Framework, which combines reinforcement learning, adversarial machine learning, multi-agent attacker/defender modelling and cyber-range/orchestration, which aims to build a realistic, scalable, training-friendly cyber-defense environment. The framework uses the adversarial reinforcement learning agent to generate, using a dynamic mapping to the MITRE ATT&CK framework, multi-step stealthy campaigns of intrusion autonomously with a defensive AI agent or human trainee learning to detect, classify, and suppress emerging threats. Adversarial machine learning module adds to the model to improve simulation realism to produce malicious samples which can tunnel hypotheses. It has been shown by experimental results that the adversarial agent acquires more advanced attack tactics as the percentage of success and stealth are increased by 78 percent, and the defensive accuracy is higher, decreasing the detection latency up to 40 percent. The scenario orchestration engine also converts adversarial behaviours to progressive training modules and improves automated defences and human analyst performances. The proposed framework is proved to be superior to traditional DRL-only simulators in the diversity of attacks, their resistance, and training utility by the comparative analysis. On the whole, this work offers a versatile, dynamic, and operationally applicable base of training on cyber-defense of the next generation
Details
Published
2025-12-29
Pages
1-12
Issue
Vol. 4 No. 4 (2025):
IJRTTE - 04 - 04
Section
Articles