Παρακαλώ χρησιμοποιήστε αυτό το αναγνωριστικό για να παραπέμψετε ή να δημιουργήσετε σύνδεσμο προς αυτό το τεκμήριο: https://ruomo.lib.uom.gr/handle/7000/1487
Τίτλος: Contextualized Filtering for Shared Cyber Threat Information
Συγγραφείς: Dimitriadis, Athanasios
Prassas, Christos
Flores, Jose Luis
Kulvatunyou, Boonserm
Ivezic, Nenad
Gritzalis, Dimitris A
Mavridis, Ioannis
Τύπος: Article
Θέματα: FRASCATI::Engineering and technology::Electrical engineering, Electronic engineering, Information engineering
FRASCATI::Engineering and technology::Electrical engineering, Electronic engineering, Information engineering
Λέξεις-Κλειδιά: actionable threat information
business process context
cyber threat information sharing
filtering
Θέματα MESH: Humans
Information Dissemination
Technology
Computer Security
Ecosystem
Ημερομηνία Έκδοσης: 18-Ιου-2021
Πηγή: Sensors (Basel, Switzerland)
Τόμος: 21
Τεύχος: 14
Πρώτη Σελίδα: 4890
Επιτομή: Cyber threat information sharing is an imperative process towards achieving collaborative security, but it poses several challenges. One crucial challenge is the plethora of shared threat information. Therefore, there is a need to advance filtering of such information. While the state-of-the-art in filtering relies primarily on keyword- and domain-based searching, these approaches require sizable human involvement and rarely available domain expertise. Recent research revealed the need for harvesting of business information to fill the gap in filtering, albeit it resulted in providing coarse-grained filtering based on the utilization of such information. This paper presents a novel contextualized filtering approach that exploits standardized and multi-level contextual information of business processes. The contextual information describes the conditions under which a given threat information is actionable from an organization perspective. Therefore, it can automate filtering by measuring the equivalence between the context of the shared threat information and the context of the consuming organization. The paper directly contributes to filtering challenge and indirectly to automated customized threat information sharing. Moreover, the paper proposes the architecture of a cyber threat information sharing ecosystem that operates according to the proposed filtering approach and defines the characteristics that are advantageous to filtering approaches. Implementation of the proposed approach can support compliance with the Special Publication 800-150 of the National Institute of Standards and Technology.
URI: https://doi.org/10.3390/s21144890
https://ruomo.lib.uom.gr/handle/7000/1487
ISSN: 1424-8220
Ηλεκτρονικό ISSN: 1424-8220
Αλλοι Προσδιοριστές: 10.3390/s21144890
Εμφανίζεται στις Συλλογές: Τμήμα Εφαρμοσμένης Πληροφορικής

Αρχεία σε αυτό το Τεκμήριο:
Αρχείο Περιγραφή ΜέγεθοςΜορφότυπος 
sensors-21-04890.pdf1,09 MBAdobe PDFΠροβολή/Ανοιγμα


Τα τεκμήρια στο Αποθετήριο προστατεύονται από πνευματικά δικαιώματα, εκτός αν αναφέρεται κάτι διαφορετικό.