Reasoning About Future Cyber-Attacks Through Socio-Technical Hacking Information

被引:3
|
作者
Marin, Ericsson [1 ]
Almukaynizi, Mohammed [1 ]
Shakarian, Paulo [1 ,2 ]
机构
[1] Arizona State Univ, Tempe, AZ 85287 USA
[2] Cyber Reconnaissance Inc, Tempe, AZ USA
关键词
Temporal Logic; AI; Cybersecurity; Darkweb;
D O I
10.1109/ICTAI.2019.00030
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
With the widespread of cyber-attack incidents, cybersecurity has become a major concern for organizations. The waste of time, money and resources while organizations counter irrelevant cyber threats can turn them into the next victim of malicious hackers. In addition, the online hacking community has grown rapidly, making the cyber threat landscape hard to keep track of. In this work, we describe an AI tool that uses a temporal logical framework to learn rules that correlate malicious hacking activity with real-world cyber incidents, aiming to leverage these rules for predicting future cyber-attacks. The framework considers socio-personal and technical indicators of enterprise attacks, analyzing the hackers and their strategies when they are planning cyber offensives online. Our results demonstrate the viability of the proposed approach, which outperforms baseline systems by an average Fl score increase of 138%, 71% and 17% for intervals of 1, 2 and 3 days respectively, providing security teams mechanisms to predict and avoid cyber-attacks.
引用
收藏
页码:157 / 164
页数:8
相关论文
共 50 条
  • [1] Modelling and reasoning about security requirements in socio-technical systems
    Paja, Elda
    Dalpiaz, Fabiano
    Giorgini, Paolo
    DATA & KNOWLEDGE ENGINEERING, 2015, 98 : 123 - 143
  • [2] Companies shoddy about cyber-attacks
    Sterlicchi, John
    Computer Fraud and Security, 2002, 2002 (03): : 7 - 8
  • [4] Socio-technical issues and challenges in cyber security
    Sadok, Moufida
    Bednar, Peter
    INFORMATION AND COMPUTER SECURITY, 2020, 28 (03) : 397 - 398
  • [5] STRisk: A Socio-Technical Approach to Assess Hacking Breaches Risk
    Hammouchi, Hicham
    Nejjari, Narjisse
    Mezzour, Ghita
    Ghogho, Mounir
    Benbrahim, Houda
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2023, 20 (02) : 1074 - 1087
  • [6] Ethics by Reasoning in Socio-Technical and Cognitive Systems
    Boissier, Olivier
    PROCEEDINGS OF 4TH INTERNATIONAL CONFERENCE ON BEHAVIORAL, ECONOMIC ADVANCE IN BEHAVIORAL, ECONOMIC, SOCIOCULTURAL COMPUTING (BESC), 2017,
  • [7] Technical and Socio-Technical Attacks on the Danish Party Endorsement System
    Schurmann, Carsten
    Bruni, Alessandro
    ELECTRONIC VOTING ( E-VOTE ID-2019), 2019, 11759 : 200 - 215
  • [8] A Socio-Technical Approach to Information Security
    Mujinga, Mathias
    Eloff, Mariki M.
    Kroeze, Jan H.
    AMCIS 2017 PROCEEDINGS, 2017,
  • [9] Socio-technical potential of cyber-physical systems
    Eßer, Gerd
    ZWF Zeitschrift fuer Wirtschaftlichen Fabrikbetrieb, 2015, 110 (03): : 142 - 144
  • [10] A model of deception during cyber-attacks on information systems
    Rowe, NC
    2004 IEEE 1ST SYMPOSIUM ON MULTI-AGENT SECURITY & SURVIVABILITY, 2004, : 21 - 30