Ir directamente a la navegación principal Ir directamente a la búsqueda Ir directamente al contenido principal

Towards the adoption of automated cyber threat intelligence information sharing with integrated risk assessment

  • Valeria Valdés Ríos
  • , Fatiha Zaidi
  • , Ana Rosa Cavalli
  • , Angel Rego
  • MONTIMAGE EURL
  • Université Paris-Saclay
  • Laboratoire Méthodes Formelles
  • Telecom SudParis
  • Basque Research and Technology Alliance (BRTA)

Producción científica: Capítulo del libro/informe/acta de congresoContribución a la conferenciarevisión exhaustiva

2 Citas (Scopus)

Resumen

In the domain of cybersecurity, effective threat intelligence and information sharing are critical operations for ensuring appropriate and timely response against threats, but limited in automation, standardization, and ease of use in current platforms. This paper introduces a Cyber Threat Intelligence (CTI) Information Sharing platform, designed for critical infrastructures and cyber-physical systems. Our platform integrates existing cybersecurity tools and leverages digital twin technology, enhancing threat analysis and mitigation capabilities. It features an automated process for disseminating standardized and structured intelligence, utilizing the Malware Information Sharing Platform (MISP) for effective dissemination. A significant enhancement is the integration of risk assessment tools, which enriches the shared intelligence with detailed risk information, supporting an informed decision-making. The platform encompasses a user-friendly dashboard and a robust backend, streamlining the threat intelligence cycle and transforming raw data coming from diverse sources into actionable insights. Overall the CTI4BC platform presents a solution to overcome challenges in the CTI sharing, contributing to a more resilient cybersecurity domain.

Idioma originalInglés
Título de la publicación alojadaARES 2024 - 19th International Conference on Availability, Reliability and Security, Proceedings
EditorialAssociation for Computing Machinery
ISBN (versión digital)9798400717185
DOI
EstadoPublicada - 30 jul 2024
Evento19th International Conference on Availability, Reliability and Security, ARES 2024 - Vienna, Austria
Duración: 30 jul 20242 ago 2024

Serie de la publicación

NombreACM International Conference Proceeding Series

Conferencia

Conferencia19th International Conference on Availability, Reliability and Security, ARES 2024
País/TerritorioAustria
CiudadVienna
Período30/07/242/08/24

Huella

Profundice en los temas de investigación de 'Towards the adoption of automated cyber threat intelligence information sharing with integrated risk assessment'. En conjunto forman una huella única.

Citar esto