Cybersecurity threat intelligence knowledge exchange based on blockchain Proposal of a new incentive model based on blockchain and Smart contracts to foster the cyber threat and risk intelligence exchange of information

被引:37
|
作者
Riesco, R. [1 ,2 ]
Larriva-Novo, X. [2 ]
Villagra, V. A. [2 ]
机构
[1] Spanish Natl Cybersecur Inst INCIBE, Leon, Spain
[2] Univ Politecn Madrid, Madrid, Spain
关键词
STIX (TM); SWRL; OWL; Dynamic Risk Management (DRM); Cyber threat intelligence (CTI); Ethereum Blockchain Smart contract;
D O I
10.1007/s11235-019-00613-4
中图分类号
TN [电子技术、通信技术];
学科分类号
0809 ;
摘要
Although cyber threat intelligence (CTI) exchange is a theoretically useful technique for improving security of a society, the potential participants are often reluctant to share their CTI and prefer to consume only, at least in voluntary based approaches. Such behavior destroys the idea of information exchange. On the other hand, governments are forcing specific entities and operators to report them specific incidents depending on their impact, otherwise there could be sanctions to those operators which are not reporting them on time. Obligations and sanctions are usually discouraging participants to share information voluntarily which will just share and report what is strictly required. We propose a paradigm shift of cybersecurity information exchange by introducing a new way to encourage all participants involved, at all levels, to share relevant information dynamically. It will also contribute to the support and deployment of Dynamic Risk Management frameworks to keep risks under an acceptance level along the time. Participants will have new and specific incentives to share, invest and consume threat intelligence and risk intelligence information depending on their different roles (producers, consumers, investors, donors and owner). Our proposal leverages from standards like Structured Threat Information Exchange, as well as W3C semantic web standards to enable a workspace of knowledge related to behavioral threat intelligence patterning to characterize tactics, techniques and procedures. At the same time, we propose an Ethereum Blockchain Smart contract Marketplace to better incentivize the sharing of that knowledge between all parties involved as well as creating a standard CTI token as a digital asset with a promising value in the market. Simulations and an experimentation were performed to demonstrate its benefits and incentives, but also its potential limits with regard to storage and cost of transactions.
引用
收藏
页码:259 / 288
页数:30
相关论文
共 41 条
  • [1] Cybersecurity threat intelligence knowledge exchange based on blockchainProposal of a new incentive model based on blockchain and Smart contracts to foster the cyber threat and risk intelligence exchange of information
    R. Riesco
    X. Larriva-Novo
    V. A. Villagra
    Telecommunication Systems, 2020, 73 : 259 - 288
  • [2] A Blockchain-Based Incentive Mechanism for Sharing Cyber Threat Intelligence
    Ma, Xingbang
    Yu, Dongsheng
    Du, Yanhui
    Li, Lanting
    Ni, Wenkai
    Lv, Haibin
    ELECTRONICS, 2023, 12 (11)
  • [3] Cyber Security Threat Intelligence Sharing Model Based on Blockchain
    Huang K.
    Lian Y.
    Feng D.
    Zhang H.
    Liu Y.
    Ma X.
    Jisuanji Yanjiu yu Fazhan/Computer Research and Development, 2020, 57 (04): : 836 - 846
  • [4] A survey on cyber threat intelligence sharing based on Blockchain
    Ahmed El-Kosairy
    Nashwa Abdelbaki
    Heba Aslan
    Advances in Computational Intelligence, 2023, 3 (3):
  • [5] Exploring Blockchain on Cybersecurity: Cyber-Threat Intelligence Sharing
    Chaabouni, Fatma Ben Mesmia
    Jayaprakash, Sujith
    SMART TRENDS IN COMPUTING AND COMMUNICATIONS, VOL 4, SMARTCOM 2024, 2024, 948 : 389 - 398
  • [6] Blockchain-Based Model for Incentivized Cyber Threat Intelligence Sharing
    Venckauskas, Algimantas
    Jusas, Vacius
    Barisas, Dominykas
    Misnevs, Boriss
    APPLIED SCIENCES-BASEL, 2024, 14 (16):
  • [7] A New Network Model for Cyber Threat Intelligence Sharing Using Blockchain Technology
    Homan, Daire
    Shiel, Ian
    Thorpe, Christina
    2019 10TH IFIP INTERNATIONAL CONFERENCE ON NEW TECHNOLOGIES, MOBILITY AND SECURITY (NTMS), 2019,
  • [8] A Blockchain-Based Framework for Scalable and Trustless Delegation of Cyber Threat Intelligence
    Dunnett, Kealan
    Pal, Shantanu
    Jadidi, Zahra
    Jurdak, Raja
    2023 IEEE INTERNATIONAL CONFERENCE ON BLOCKCHAIN AND CRYPTOCURRENCY, ICBC, 2023,
  • [9] Neural Network and Blockchain Based Technique for Cyber Threat Intelligence and Situational Awareness
    Graf, Roman
    King, Ross
    2018 10TH INTERNATIONAL CONFERENCE ON CYBER CONFLICT (CYCON X): MAXIMISING EFFECTS, 2018, : 409 - 425
  • [10] Blockchain-Based Cyber Threat Intelligence System Architecture for Sustainable Computing
    Cha, Jeonghun
    Singh, Sushil Kumar
    Pan, Yi
    Park, Jong Hyuk
    SUSTAINABILITY, 2020, 12 (16)