Taxonomical Challenges for Cyber Incident Response Threat Intelligence: A Review

As attackers continue to devise new means of exploiting vulnerabilities in computer systems, security personnel are doing their best to identify loopholes and threats. Analysis of threats to come up with effective mitigation techniques requires all-encompassing information about them. Security analy...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Veröffentlicht in:International journal of cloud applications and computing 2022, Vol.12 (1), p.1-14
Hauptverfasser: Ammi, Meryem, Adedugbe, Oluwasegun, Alharby, Fahad Mohamed, Benkhelifa, Elhadj
Format: Artikel
Sprache:eng
Schlagworte:
Online-Zugang:Volltext
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
Beschreibung
Zusammenfassung:As attackers continue to devise new means of exploiting vulnerabilities in computer systems, security personnel are doing their best to identify loopholes and threats. Analysis of threats to come up with effective mitigation techniques requires all-encompassing information about them. Security analysts can represent and share cyber threat information with semantic knowledge graphs within cyber security space to access. However, there should be no conflicting information because the response to threats must be immediate. This calls for a standardized taxonomy that is generally accepted within the cybersecurity space to represent information, ultimately making cyber threat intelligence (CTI) credible. This review looks into existing CTI-based ontologies, taxonomies, and knowledge graphs. The absence of standardized taxonomy identified could be responsible for limited taxonomy encoding and integration among existing CTI-based ontologies, as well as missing interconnections between taxonomies and existing ontologies. Hence, the development of a standardized taxonomy will enhance CTI effectiveness.
ISSN:2156-1834
2156-1826
DOI:10.4018/IJCAC.300770