SYSTEM AND METHOD FOR IDENTIFYING CYBERTHREATS FROM UNSTRUCTURED SOCIAL MEDIA CONTENT

A cyberthreat detection system queries (301) a content database for unstructured content that contains a set of keywords, clusters (303) the unstructured content into clusters based on topics, and determines (305) a cybersecurity cluster utilizing a list of vetted cybersecurity phrases. The set of k...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
1. Verfasser: Salo, Daniel Clark
Format: Patent
Sprache:eng ; fre ; ger
Schlagworte:
Online-Zugang:Volltext bestellen
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
Beschreibung
Zusammenfassung:A cyberthreat detection system queries (301) a content database for unstructured content that contains a set of keywords, clusters (303) the unstructured content into clusters based on topics, and determines (305) a cybersecurity cluster utilizing a list of vetted cybersecurity phrases. The set of keywords represents a target of interest such as a newly discovered cyberthreat, an entity, a brand, or a combination thereof. The cybersecurity cluster thus determined is composed of unstructured content that has the set of keywords as well as some percentage of the vetted cybersecurity phrases. If the size of the cybersecurity cluster, as compared to the amount of unstructured content queried from the content database, meets or exceeds a predetermined threshold, the query is saved (309) as a new classifier rule that can then be used by a cybersecurity classifier to automatically, dynamically and timely identify the target of interest in unclassified unstructured content.