首页> 外文会议>International Conference on Information Systems Security and Privacy >Cyber Threat Information Classification and Life Cycle Management using Smart Contracts
【24h】

Cyber Threat Information Classification and Life Cycle Management using Smart Contracts

机译:网络威胁信息分类和使用智能合同的生命周期管理

获取原文

摘要

Nowadays, cyber critical infrastructures (CIs) are increasingly targeted by highly sophisticated cyber attacks and should be protected. Advances in cyber situational awareness technology lead to the creation of increasingly complex tools. Human analysts face challenges finding relevant information in large, complex data sets, when exploring data to discover patterns and insights. To be effective in identifying and defeating future cyber-attacks, cyber analysts require novel tools for incident report classification and life cycle management that can automatically analyse and share result in secure way between CI stakeholders to achieve better situation comprehension. Our goal is to provide solutions in realtime that could replace human input for cyber incident classification and management tasks to eliminate irrelevant information and to focus on important information to promptly adopt suitable countermeasures in case of an attack. Another contribution relates to the provided support for document life cycle management that should reduce the number of manual operations and save storage space. In this paper we evaluate the application of so-called "smart contracts" to an incident classification system and assess its accuracy and performance. We demonstrate how the presented techniques can be applied to support incident handling tasks performed by security operation centers (SOCs).
机译:如今,网络关键基础设施(CIS)越来越多地由高度复杂的网络攻击瞄准,并且应该受到保护。网络境际意识技术的进步导致创建日益复杂的工具。人类分析师面临挑战在探索数据以发现模式和见解时,在大型复杂数据集中找到相关信息。为了有效地识别和击败未来的网络攻击,网络分析师需要新颖的事件报告分类和生命周期管理,可以自动分析和分享CI利益相关者之间的安全方式,以实现更好的情况理解。我们的目标是在实时提供解决方案,可以取代网络事件分类和管理任务的人类投入,以消除无关的信息,并专注于在攻击情况下立即采取适当的对策的重要信息。另一个贡献涉及为文档生命周期管理提供的支持,该支持应减少手动操作的数量并保存存储空间。在本文中,我们将所谓的“智能合约”的应用评估到事件分类系统,并评估其准确性和性能。我们展示了如何应用于所呈现的技术来支持由安全操作中心(SOC)执行的事件处理任务。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号