Digital Twins (DTs) are emerging as powerful tools in cybersecurity, enabling real-time monitoring, analysis, and simulation of cyber-physical environments. By replicating IT (Information Technology), OT (Operational Technology), and IoT (Internet of Things) infrastructures, DTs enhance cyber-attack detection, incident response, and security resilience. This research explores how DTs, integrated with penetration testing tools, improve cybersecurity education by providing a structured framework for understanding cyber threats. The study introduces the Red Team Knife (RTK), a penetration testing toolset designed to support cybersecurity training and security operations. RTK aligns with the Cyber Kill Chain model to guide students through reconnaissance, exploitation, and response strategies. By leveraging DTs, RTK enhances cyber threat intelligence, facilitates real-world attack simulations, and bridges the gap between cybersecurity training and business demand. This approach is currently being tested within academic programs to improve students' cybersecurity competencies, offering hands-on experience in vulnerability assessment and security operations. The findings highlight the potential of DTs in transforming cybersecurity education, making training more adaptive and aligned with industry needs.
Cyber Digital Twin to improve Security Education: the RedTeam Knife approach
Barletta, Vita Santa;Caivano, Danilo;Catalano, Christian;Gentile, Adriano;Posa, Davide Pio;Piccinno, Antonio
2025-01-01
Abstract
Digital Twins (DTs) are emerging as powerful tools in cybersecurity, enabling real-time monitoring, analysis, and simulation of cyber-physical environments. By replicating IT (Information Technology), OT (Operational Technology), and IoT (Internet of Things) infrastructures, DTs enhance cyber-attack detection, incident response, and security resilience. This research explores how DTs, integrated with penetration testing tools, improve cybersecurity education by providing a structured framework for understanding cyber threats. The study introduces the Red Team Knife (RTK), a penetration testing toolset designed to support cybersecurity training and security operations. RTK aligns with the Cyber Kill Chain model to guide students through reconnaissance, exploitation, and response strategies. By leveraging DTs, RTK enhances cyber threat intelligence, facilitates real-world attack simulations, and bridges the gap between cybersecurity training and business demand. This approach is currently being tested within academic programs to improve students' cybersecurity competencies, offering hands-on experience in vulnerability assessment and security operations. The findings highlight the potential of DTs in transforming cybersecurity education, making training more adaptive and aligned with industry needs.I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.


