On the Integration of Course of Action Playbooks into Shareable Cyber Threat Intelligence
The result's identifiers
Result code in IS VaVaI
<a href="https://www.isvavai.cz/riv?ss=detail&h=RIV%2F63839172%3A_____%2F21%3A10133367" target="_blank" >RIV/63839172:_____/21:10133367 - isvavai.cz</a>
Result on the web
<a href="https://arxiv.org/pdf/2110.10540.pdf" target="_blank" >https://arxiv.org/pdf/2110.10540.pdf</a>
DOI - Digital Object Identifier
<a href="http://dx.doi.org/10.1109/BigData52589.2021.9671893" target="_blank" >10.1109/BigData52589.2021.9671893</a>
Alternative languages
Result language
angličtina
Original language name
On the Integration of Course of Action Playbooks into Shareable Cyber Threat Intelligence
Original language description
Motivated by the introduction of CACAO, the first open standard that harmonizes the way we document courses of action in a machine-readable format for interoperability, and the benefits for cybersecurity operations derived from utilizing, and coupling and sharing course of action playbooks with cyber threat intelligence, we introduce a uniform metadata template that supports the management and integration of course of action playbooks into knowledge representation and knowledge management systems. We demonstrate the applicability of our approach through two use-case implementations where the proposed playbook metadata template is utilized to introduce and integrate course of action playbooks, such as CACAO, into the MISP threat intelligence platform and the OASIS Threat Actor Context ontology.
Czech name
—
Czech description
—
Classification
Type
D - Article in proceedings
CEP classification
—
OECD FORD branch
10201 - Computer sciences, information science, bioinformathics (hardware development to be 2.2, social aspect to be 5.8)
Result continuities
Project
<a href="/en/project/LM2018140" target="_blank" >LM2018140: e-Infrastructure CZ</a><br>
Continuities
P - Projekt vyzkumu a vyvoje financovany z verejnych zdroju (s odkazem do CEP)<br>I - Institucionalni podpora na dlouhodoby koncepcni rozvoj vyzkumne organizace
Others
Publication year
2021
Confidentiality
S - Úplné a pravdivé údaje o projektu nepodléhají ochraně podle zvláštních právních předpisů
Data specific for result type
Article name in the collection
IEEE Big Data 2021 Conference Proceedings
ISBN
978-1-66543-902-2
ISSN
—
e-ISSN
—
Number of pages
5
Pages from-to
—
Publisher name
IEEE
Place of publication
online
Event location
Online
Event date
Dec 15, 2021
Type of event by nationality
WRD - Celosvětová akce
UT code for WoS article
—