A framework for threat intelligence extraction and fusion

计算机科学 关系(数据库) 追踪 计算机安全 可追溯性 构造(python库) 管道(软件) 关系抽取 对象(语法) 数据挖掘 人工智能 软件工程 操作系统 程序设计语言
作者
Yongyan Guo,Zhengyu Liu,Cheng Huang,Nannan Wang,Hai Min,Wenbo Guo,Jiayong Liu
出处
期刊:Computers & Security [Elsevier BV]
卷期号:132: 103371-103371 被引量:32
标识
DOI:10.1016/j.cose.2023.103371
摘要

Cyber-attacks, with various emerging attack techniques, are becoming increasingly sophisticated and difficult to deal with, posing great threats to companies and every individual. Therefore, analyzing attack incidents and tracing the attack groups behind them becomes extremely important. Threat intelligence provides a new technical solution for attack traceability by constructing Cybersecurity Knowledge Graph (CKG). In this paper, we propose a framework for threat intelligence extraction and fusion, which is able to extract, correlate and unify cybersecurity entity-relation triples from structured and unstructured data. However, the existing entity and relation extraction for cybersecurity concepts uses the traditional pipeline model that suffers from error propagation and ignores the connection between the two subtasks. To solve the above problem, we propose a joint entity and relation extraction model for cybersecurity concepts. We model the joint extraction problem as a multiple sequence labeling problem, generating separate label sequences for different relations, which contain information about the involved entities and the subject and object of that relation. Experimental results on Open Source Intelligence (OSINT) data show that the F1 value of the joint model is 81.37%, which is better than the previous pipeline model. For the knowledge fusion, we propose an improved Levenshtein distance to correlate the same entities extracted from different data sources to construct a preliminary CKG, which is demonstrated in the Experiments section.
最长约 10秒,即可获得该文献文件

科研通智能强力驱动
Strongly Powered by AbleSci AI
科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
易燃装置发布了新的文献求助10
1秒前
1秒前
清秀初晴发布了新的文献求助10
2秒前
黄子弘凡的亲亲老婆完成签到,获得积分20
2秒前
3秒前
4秒前
丘比特应助温暖霸采纳,获得10
4秒前
Kaneki完成签到,获得积分10
5秒前
Owen应助ShuxianYang采纳,获得10
5秒前
tianhualefei发布了新的文献求助10
7秒前
7秒前
ppprotein发布了新的文献求助10
8秒前
开心青旋发布了新的文献求助10
8秒前
Hello应助baoziya采纳,获得10
9秒前
9秒前
蓝天发布了新的文献求助10
9秒前
花开富贵发布了新的文献求助10
10秒前
大模型应助大反应釜采纳,获得10
12秒前
13秒前
小马甲应助易燃装置采纳,获得10
14秒前
14秒前
16秒前
梁梁完成签到 ,获得积分10
18秒前
冠鞍发布了新的文献求助10
19秒前
米鼓完成签到 ,获得积分10
19秒前
ShuxianYang发布了新的文献求助10
19秒前
lx完成签到,获得积分20
20秒前
无花果应助四蓝采纳,获得10
22秒前
ruuuu完成签到,获得积分10
23秒前
十一发布了新的文献求助10
24秒前
mader完成签到,获得积分10
24秒前
28秒前
贪玩的秋柔应助spin085采纳,获得10
29秒前
29秒前
竹青完成签到 ,获得积分10
29秒前
科研通AI2S应助孙三问采纳,获得30
31秒前
城北徐公发布了新的文献求助10
32秒前
33秒前
硕心完成签到,获得积分10
34秒前
四蓝完成签到,获得积分10
35秒前
高分求助中
(应助此贴封号)【重要!!请各用户(尤其是新用户)详细阅读】【科研通的精品贴汇总】 10000
PowerCascade: A Synthetic Dataset for Cascading Failure Analysis in Power Systems 2000
Various Faces of Animal Metaphor in English and Polish 800
Signals, Systems, and Signal Processing 610
Photodetectors: From Ultraviolet to Infrared 500
On the Dragon Seas, a sailor's adventures in the far east 500
Yangtze Reminiscences. Some Notes And Recollections Of Service With The China Navigation Company Ltd., 1925-1939 500
热门求助领域 (近24小时)
化学 材料科学 医学 生物 纳米技术 工程类 有机化学 化学工程 生物化学 计算机科学 物理 内科学 复合材料 催化作用 物理化学 光电子学 电极 细胞生物学 基因 无机化学
热门帖子
关注 科研通微信公众号,转发送积分 6348932
求助须知:如何正确求助?哪些是违规求助? 8164072
关于积分的说明 17176386
捐赠科研通 5405408
什么是DOI,文献DOI怎么找? 2862011
邀请新用户注册赠送积分活动 1839796
关于科研通互助平台的介绍 1689045