Art17-一种防篡改的网络威胁情报源排序方法

ID:23714

大小:3.51 MB

页数:24页

时间:2022-11-29

金币:15

上传者:战必胜
321
FeedRank: A Tamper-
resistant Method for the
Ranking of Cyber Threat
Intelligence Feeds
Abstract: Organizations increasingly rely on cyber threat intelligence feeds to protect
their infrastructure from attacks. These feeds typically list IP addresses or domains
associated with malicious activities such as spreading malware or participating
in a botnet. Today, there is a rich ecosystem of commercial and free cyber threat
intelligence feeds, making it difcult, yet essential, for network defenders to quantify
the quality and to select the optimal set of feeds to follow. Selecting too many or low-
quality feeds results in many false alerts, while considering too few feeds increases
the risk of missing relevant threats. Naïve individual metrics like size and update rate
Roland Meier
Department of Information Technology
and Electrical Engineering
ETH Zürich
Zürich, Switzerland
meierrol@ethz.ch
David Gugelmann
Exeon Analytics
Zürich, Switzerland
david.gugelmann@exeon.ch
Laurent Vanbever
Department of Information Technology
and Electrical Engineering
ETH Zürich
Zürich, Switzerland
lvanbever@ethz.ch
Cornelia Scherrer
Department of Information Technology
and Electrical Engineering
ETH Zürich
Zürich, Switzerland
cornelia.scherrer@alumni.ethz.ch
Vincent Lenders
Science and Technology
armasuisse
Thun, Switzerland
vincent.lenders@armasuisse.ch
2018 10th International Conference on Cyber Conict
CyCon X: Maximising Eects
T. Minárik, R. Jakschis, L. Lindström (Eds.)
2018 © NATO CCD COE Publications, Tallinn
Permission to make digital or hard copies of this publication for internal
use within NATO and for personal or educational use when for non-prot or
non-commercial purposes is granted providing that copies bear this notice
and a full citation on the rst page. Any other reproduction or transmission
requires prior written permission by NATO CCD COE.
资源描述:

当前文档最多预览五页,下载文档查看全文

此文档下载收益归作者所有

当前文档最多预览五页,下载文档查看全文
温馨提示:
1. 部分包含数学公式或PPT动画的文件,查看预览时可能会显示错乱或异常,文件下载后无此问题,请放心下载。
2. 本文档由用户上传,版权归属用户,天天文库负责整理代发布。如果您对本文档版权有争议请及时联系客服。
3. 下载前请仔细阅读文档内容,确认文档内容符合您的需求后进行下载,若出现内容与标题不符可向本站投诉处理。
4. 下载文档时可能由于网络波动等原因无法下载或下载错误,付费完成后未能成功下载的用户请联系客服处理。
关闭