
Virtualized Apt Detection Framework Using Wazuh and Virus Total | IJET Volume 12 – Issue 4 | IJET-V12I4P10

Table of Contents
ToggleInternational Journal of Engineering and Techniques (IJET)
Open Access • Peer Reviewed • High Citation & Impact Factor • ISSN: 2395-1303
Volume 12, Issue 4 | Published: July 2026
Author: Priyank Kartikey, Apoorv Khare
DOI: https://doi.org/{{doi}} • PDF: Download
Abstract
Cybersecurity is a major concern in today’s connected world. As digital technologies grow, they bring new opportunities but also more advanced threats. Cyber threats are evolving quickly, with attackers constantly improving their methods to find and exploit weaknesses, bypassing traditional security measures. To counter these challenges, organizations need to adopt proactive and integrated strategies to protect their digital assets and ensure smooth operations. This paper aims to develop and implement a thorough security framework within a virtual environment. By using virtual machines (VMs) with Ubuntu and Windows, and integrating advanced security tools like Wazuh , Virus Total, and Kali Linux, we simulate real-world cyber threats and improve our defensive capabilities. The main goal is to show how these integrated solutions can effectively detect, mitigate, and respond to various cyber threats, including Advanced Persistent Threats (APTs).
Keywords
Virtual machine, cybersecurity, Advanced persistent Threats.
Conclusion
Throughout this paper, we have successfully integrated various infosec feeds, allowing for real- time monitoring and analysis of emerging threats. By aggregating data from multiple reputable sources, we created a centralized repository of threat intelligence that provides a holistic view of the current security landscape. This integration not only streamlines the process of threat detection but also enhances the accuracy and reliability of the information gathered. Planned integration with MISP and the development of a Telegram scraper are pivotal steps in the evolution of our cybersecurity framework. These enhancements will provide us with deeper insights, more timely threat detection, and a greater ability to preemptively address potential security incidents. As we continue to innovate and expand our capabilities, we are committed to maintaining a robust defense against the ever-changing landscape of cyber threats.
References
[1]. A novel approach for detecting advanced persistent threats Jaafer Al-Saraireh, Ala’ Masarweh
[2]. Advanced Persistent Threats (APTs): Analysis, Detection, and Mitigation Strategies Hider Ali
[3]. Advanced Persistent Threat Security: 5 Modern Strategies Gilad David Maayan [4]. Strategies for Mitigating Advanced Persistent Threats (APTs) P.1 Kaspersky IT Encyclopedia
[5]. Advanced Persistent Threat Detection Performance Analysis Based on Machine Learning ModelsAnil Kumar1, Amandeep Noliya2, Ritu Makani3, Pardeep Kumar4, Jagsir Singh5
[6]. “Are you being targeted by an Advanced Persistent Threat?”. Command Five Pty Ltd. Retrieved 2011-03-31.
[7]. A novel approach for detecting advanced persistent threats Jaafer Al-Saraireh ⇑, Ala’
Masarweh
[8]. ERIC M. HUTCHINS; MICHAEL J. CLOPPERTY; ROHAN M.AMIN. MCGRAW-HILL OSBORNE MEDIA. ISBN 978-0071772495.
[9]. “Intelligence-Driven Computer Network Defense Informed by Analysis of Adversary Campaigns and Intrusion Kill Chains” (PDF). Lockheed Martin Corporation Abstract. Retrieved March 13, 2013.
[10]. “Assessing Outbound Traffic to Uncover Advanced Persistent Threat” (PDF). SANS Technology Institute. Retrieved 2013-04-14.
[11]. “Introducing Forrester’s Cyber Threat Intelligence Research”. Forrester Research. Retrieved 2014-04-14.
[12]. “Advanced Persistent Threats: Learn the ABCs of APTs – Part A”. SecureWorks. SecureWorks. Retrieved 23 January 2017.
[13]. Olavsrud, Thor. “Targeted Attacks Increased, Became More Diverse in 2011”. PCWorld. [14]. Sean Bodmer; Dr. Max Kilger; Gregory Carpenter; Jade Jones (2012). Reverse Deception: Organized Cyber Threat Counter-Exploitation.
[15]. “Outmaneuvering Advanced and Evasive Malware Threats”. Secureworks. Secureworks Insights. Retrieved 24 February 2016.
[16]. “APT1: Exposing One of China’s Cyber Espionage Units”. Mandiant. 2013.
[17]Richard Bejtlich. What Is APT and What Does It Want? [18]http://taosecurity.blogspot.be/2010/01/what-is-apt-and-what-does-it-want.html, 2010.
[19]ISACA. Advanced Persistent Threat Awareness. 2013.
[20]Kaspersky. The Icefog APT: A Tale of Cloak and
Three Daggers. 2013.
[21]FireEye Labs. Fireeye advanced threat report
2013. 2014.
[22]McAfee Labs. Protecting Your Critical Assets: Lessons Learned from “Operation Aurora”. 2010.
[23]Mandiant. The Advanced Persistent Threat. 2010.
[24]Mandiant. APT1: Exposing One of China’s Cyber Espionage Unit. 2013. [25]Symantec. Advanced Persistent Threats: A Symantec Perspective. 2011.
[26]Colin Tankard. Advanced Persistent Threats and how to monitor and deter them. Network security, 2011(8):16-19, 2011.
[27]Gordon Thomson. APTs: a poorly understood challenge. Network Security, 2011(11):9-11, 2011.
[28]HTTP://WWW.MCAFEE.COM/US/RESOURCES/WHITE-PAPERS/WP-OPERATION-SHADY-RAT.PDF
[29]HTTP://WWW.NYTIMES.COM/2013/02/19/TECHNOLOGY/CHINAS-ARMY-IS-SEEN-AS-TIED-TO-HACKING- AGAINST-US.HTML?EMC=NA&_R=2&
[30]HTTPS://WWW.SECUREWORKS.COM/RESEARCH/ANALYSI
S-OF-DHS-NCCIC-INDICATORS
[31]https://www.scribd.com/doc/13731776/Tracking-GhostNet-Investigating-a-Cyber- Espionage-Network [32]http://www.nartv.org/mirror/ghostnet.pdf
[33]HTTP://CDN0.VOXCDN.COM/ASSETS/4589853/CROWDSTR
IKE-INTELLIGENCE-REPORT-PUTTER- PANDA.ORIGINAL.PDF.
Cite this article
APA
Priyank Kartikey, Apoorv Khare (July 2026). Virtualized Apt Detection Framework Using Wazuh and Virus Total. International Journal of Engineering and Techniques (IJET), 12(4). https://doi.org/{{doi}}
Priyank Kartikey, Apoorv Khare, “Virtualized Apt Detection Framework Using Wazuh and Virus Total,” International Journal of Engineering and Techniques (IJET), vol. 12, no. 4, July 2026, doi: {{doi}}.
