当前位置: X-MOL 学术Inf. Syst. Front. › 论文详情
Our official English website, www.x-mol.net, welcomes your feedback! (Note: you will need to create a separate account there.)
Toward Automated Cyber Defense with Secure Sharing of Structured Cyber Threat Intelligence
Information Systems Frontiers ( IF 5.9 ) Pub Date : 2021-02-03 , DOI: 10.1007/s10796-020-10103-7
Md. Farhan Haque , Ram Krishnan

Cyber Threat sharing helps with defending against cyber attacks in a timely manner. Many frameworks have been proposed for CTI sharing such as Structured Threat Information Expression (STIX) and Trusted Automated Exchange of Intelligence Information (TAXII). However, CTI sharing in a controlled and automated manner is critical. In this paper, we demonstrate Relationship Based Access Control (ReBAC) as an appropriate model for CTI sharing. We also develop an approach for automated threat detection, generation and sharing of structured CTI and taking course of actions to mitigate cyber threats. Finally, we implement an Automated Cyber Defense System in a cloud based environment.



中文翻译:

通过安全共享结构化网络威胁情报实现自动化网络防御

网络威胁共享有助于及时防御网络攻击。已经提出了许多用于CTI共享的框架,例如结构化威胁信息表达(STIX)和可信赖的情报自动交换(TAXII)。但是,以受控和自动化的方式共享CTI至关重要。在本文中,我们演示了基于关系的访问控制(ReBAC)作为CTI共享的合适模型。我们还开发了一种方法,用于自动威胁检测,结构化CTI的生成和共享以及采取措施减轻网络威胁。最后,我们在基于云的环境中实施了自动化网络防御系统。

更新日期:2021-02-03
down
wechat
bug