A Methodology to Evaluate Standards and Platforms within Cyber Threat Intelligence

Impacto

Downloads

Downloads per month over past year

de Melo e Silva, Alessandra and Costa Gondim, João José and Oliveira Albuquerque, Robson de and García Villalba, Luis Javier (2020) A Methodology to Evaluate Standards and Platforms within Cyber Threat Intelligence. Future Internet, 12 (6). p. 108. ISSN 1999-5903

[thumbnail of futureinternet-12-00108.pdf]
Preview
PDF
Creative Commons Attribution.

463kB

Official URL: https://doi.org/10.3390/fi12060108




Abstract

The cyber security landscape is fundamentally changing over the past years. While technology is evolving and new sophisticated applications are being developed, a new threat scenario is emerging in alarming proportions. Sophisticated threats with multi-vectored, multi-staged and polymorphic characteristics are performing complex attacks, making the processes of detection and mitigation far more complicated. Thus, organizations were encouraged to change their traditional defense models and to use and to develop new systems with a proactive approach. Such changes are necessary because the old approaches are not effective anymore to detect advanced attacks. Also, the organizations are encouraged to develop the ability to respond to incidents in real-time using complex threat intelligence platforms. However, since the field is growing rapidly, today Cyber Threat Intelligence concept lacks a consistent definition and a heterogeneous market has emerged, including diverse systems and tools, with different capabilities and goals. This work aims to provide a comprehensive evaluation methodology of threat intelligence standards and cyber threat intelligence platforms. The proposed methodology is based on the selection of the most relevant candidates to establish the evaluation criteria. In addition, this work studies the Cyber Threat Intelligence ecosystem and Threat Intelligence standards and platforms existing in state-of-the-art.


Item Type:Article
Uncontrolled Keywords:cyber security; cyber threat intelligence; threat intelligence platform; threat intelligence standard
Subjects:Sciences > Computer science > Internet
Sciences > Computer science > Computer security
ID Code:67526
Deposited On:26 Aug 2021 11:31
Last Modified:06 Sep 2021 09:18

Origin of downloads

Repository Staff Only: item control page