{
  "id": 14546,
  "url": "https://arxiv.org/abs/2607.25572",
  "title": "Mapping CVEs to MITRE ATT&CK Techniques: A Curated Gold-Set Classifier and the Limits of LLM-Assisted Label Expansion",
  "summary": "We present a reproducible pipeline for mapping Common Vulnerabilities and Exposures (CVEs) to MITRE ATT&CK Enterprise techniques from free-text vulnerability descriptions. Rather than relying on the CWE->CAPEC->ATT&CK derivation chain, whose table-expansion artifacts we quantify, we train a multi-label classifier on a curated gold dataset of 1,207 CVEs from expert MITRE Center for Threat-Informed Defense mappings. The resulting model approximately doubles recall@5 compared with a zero-shot embed",
  "authors": "Cédric Bonhomme, Alexandre Dulaunoy",
  "category": "research",
  "topics": "military-security",
  "orgs": null,
  "regions": null,
  "published_at": "2026-07-27T20:00:00.000Z",
  "fetched_at": "2026-07-30T05:10:24.387Z",
  "source_slug": "hf-daily",
  "source_name": "HuggingFace Daily Papers",
  "source_homepage": "https://huggingface.co/papers",
  "ethics_ai_record_url": "https://ethics.ai/record/14546",
  "original_url": "https://arxiv.org/abs/2607.25572",
  "evidence_status": "source-only",
  "attribution": "via ethics.ai"
}