Browse wiki

From Navigators

Jump to: navigation, search
Publication:JISA2021
Abstract Open Source Intelligence (OSINT) data is c Open Source Intelligence (OSINT) data is collected by publicly available sources to be used by intelligence contexts among which Threat Intelligence Platforms (TIPs) are the main consumers. These platforms help organizations aggregate, correlate, and analyze threat data from multiple sources in real-time to support defensive actions. However, considering the unstructured nature of the collected data, TIPs require the data to be correlated with real-time information coming from the monitored infrastructure, before being further analyzed and shared. This paper presents \emph{ETIP}, an \emph{Enriched Threat Intelligence Platform} with extended capabilities in terms of import, quality assessment processes, visualization and information sharing in current TIPs. The platform receives structured cyber threat information from multiple sources and performs the correlation among them with static and dynamic data coming from external sources and the monitored infrastructure. This allows the evaluation of a threat score through heuristic-based analysis, used to enrich the information received from OSINT and other sources. The final result is sent to external entities, such as SIEMs, to be further used for a more in-depth analysis, and to be shared with trusted organizations. d to be shared with trusted organizations.
Author Gustavo Gonzalez-Granadillo + , Mario Faiella + , Ibéria Medeiros + , Rui Azevedo + , Susana Gonzalez-Zarzosa +
Journal Journal of Information Security and Applications, Elsevier  +
Key JISA2021  +
Month may  +
NumPubDate 2,021.05  +
Project Project:DiSIEM +
ResearchLine Fault and Intrusion Tolerance in Open Distributed Systems (FIT) +
Title ETIP: An Enriched Threat Intelligence Platform for Improving OSINT Correlation, Analysis, Visualisation and Sharing Capabilities  +
Type article  +
Volume 58  +
Year 2021  +
Has improper value forThis property is a special property in this wiki. Url  +
Categories Publication  +
Modification dateThis property is a special property in this wiki. 19 March 2021 00:57:02  +
hide properties that link here 
  No properties link to this page.
 

 

Enter the name of the page to start browsing from.
Views
Personal tools
Toolbox
Navigators toolbox