A framework for threat intelligence extraction and fusion

计算机科学 关系(数据库) 追踪 计算机安全 可追溯性 构造(python库) 管道(软件) 关系抽取 对象(语法) 数据挖掘 人工智能 软件工程 操作系统 程序设计语言
作者
Yongyan Guo,Zhengyu Liu,Cheng Huang,Nannan Wang,Hai Min,Wenbo Guo,Jiayong Liu
出处
期刊:Computers & Security [Elsevier BV]
卷期号:132: 103371-103371 被引量:32
标识
DOI:10.1016/j.cose.2023.103371
摘要

Cyber-attacks, with various emerging attack techniques, are becoming increasingly sophisticated and difficult to deal with, posing great threats to companies and every individual. Therefore, analyzing attack incidents and tracing the attack groups behind them becomes extremely important. Threat intelligence provides a new technical solution for attack traceability by constructing Cybersecurity Knowledge Graph (CKG). In this paper, we propose a framework for threat intelligence extraction and fusion, which is able to extract, correlate and unify cybersecurity entity-relation triples from structured and unstructured data. However, the existing entity and relation extraction for cybersecurity concepts uses the traditional pipeline model that suffers from error propagation and ignores the connection between the two subtasks. To solve the above problem, we propose a joint entity and relation extraction model for cybersecurity concepts. We model the joint extraction problem as a multiple sequence labeling problem, generating separate label sequences for different relations, which contain information about the involved entities and the subject and object of that relation. Experimental results on Open Source Intelligence (OSINT) data show that the F1 value of the joint model is 81.37%, which is better than the previous pipeline model. For the knowledge fusion, we propose an improved Levenshtein distance to correlate the same entities extracted from different data sources to construct a preliminary CKG, which is demonstrated in the Experiments section.
最长约 10秒,即可获得该文献文件

科研通智能强力驱动
Strongly Powered by AbleSci AI
科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
1秒前
英吉利25发布了新的文献求助10
1秒前
2秒前
似宁发布了新的文献求助10
2秒前
3秒前
刘婧完成签到 ,获得积分10
3秒前
传奇3应助叮当采纳,获得30
3秒前
3秒前
3秒前
123发布了新的文献求助20
4秒前
hqq发布了新的文献求助10
4秒前
4秒前
哇卡酷卡发布了新的文献求助10
5秒前
怕黑水蓝给怕黑水蓝的求助进行了留言
5秒前
5秒前
粥mi发布了新的文献求助10
5秒前
水之形发布了新的文献求助10
6秒前
jj发布了新的文献求助10
6秒前
共享精神应助小淘气采纳,获得10
7秒前
xiaoziyi666发布了新的文献求助10
8秒前
怕黑山柏发布了新的文献求助10
8秒前
orixero应助似宁采纳,获得10
8秒前
喻超发布了新的文献求助20
9秒前
10秒前
橘橘完成签到,获得积分10
10秒前
完犊子完成签到,获得积分10
10秒前
10秒前
脑洞疼应助中科路2020采纳,获得10
10秒前
玫瑰遇上奶油完成签到 ,获得积分10
10秒前
11秒前
11秒前
Visy发布了新的文献求助10
11秒前
陈洋发布了新的文献求助10
13秒前
万能图书馆应助ganerwahaha采纳,获得10
13秒前
李爱国应助lxaiczn采纳,获得10
13秒前
完美世界应助Starming采纳,获得10
13秒前
13秒前
风晓人情完成签到 ,获得积分10
14秒前
话梅糖发布了新的文献求助10
14秒前
WYQ发布了新的文献求助10
14秒前
高分求助中
The Wiley Blackwell Companion to Diachronic and Historical Linguistics 3000
Standards for Molecular Testing for Red Cell, Platelet, and Neutrophil Antigens, 7th edition 1000
HANDBOOK OF CHEMISTRY AND PHYSICS 106th edition 1000
ASPEN Adult Nutrition Support Core Curriculum, Fourth Edition 1000
Signals, Systems, and Signal Processing 610
脑电大模型与情感脑机接口研究--郑伟龙 500
GMP in Practice: Regulatory Expectations for the Pharmaceutical Industry 500
热门求助领域 (近24小时)
化学 材料科学 医学 生物 纳米技术 工程类 有机化学 化学工程 生物化学 计算机科学 物理 内科学 复合材料 催化作用 物理化学 光电子学 电极 细胞生物学 基因 无机化学
热门帖子
关注 科研通微信公众号,转发送积分 6296180
求助须知:如何正确求助?哪些是违规求助? 8113662
关于积分的说明 16982478
捐赠科研通 5358357
什么是DOI,文献DOI怎么找? 2846809
邀请新用户注册赠送积分活动 1824096
关于科研通互助平台的介绍 1678998