Visible to the public Sharing Cyber Threat Intelligence and Collaboration

TitleSharing Cyber Threat Intelligence and Collaboration
Publication TypeConference Paper
Year of Publication2021
AuthorsKanca, Ali Melih, Sagiroglu, Seref
Conference Name2021 International Conference on Information Security and Cryptology (ISCTURKEY)
Date Publisheddec
KeywordsCollaboration, composability, compositionality, cryptology, Cyber Threat Information, Ecosystems, Information security, information sharing, machine learning, Malware, Metrics, Organizations, policy governance, product development, pubcrawl, resilience, Resiliency, sharing of cyber threat information, Zack Information Gap analysis
AbstractWith the developing technology, cyber threats are developing rapidly, and the motivations and targets of cyber attackers are changing. In order to combat these threats, cyber threat information that provides information about the threats and the characteristics of the attackers is needed. In addition, it is of great importance to cooperate with other stakeholders and share experiences so that more information about threat information can be obtained and necessary measures can be taken quickly. In this context, in this study, it is stated that the establishment of a cooperation mechanism in which cyber threat information is shared will contribute to the cyber security capacity of organizations. And using the Zack Information Gap analysis, the deficiency of organizations in sharing threat information were determined and suggestions were presented. In addition, there are cooperation mechanisms in the USA and the EU where cyber threat information is shared, and it has been evaluated that it would be beneficial to establish a similar mechanism in our country. Thus, it is evaluated that advanced or unpredictable cyber threats can be detected, the cyber security capacities of all stakeholders will increase and a safer cyber ecosystem will be created. In addition, it is possible to collect, store, distribute and share information about the analysis of cyber incidents and malware analysis, to improve existing cyber security products or to encourage new product development, by carrying out joint R&D studies among the stakeholders to ensure that domestic and national cyber security products can be developed. It is predicted that new analysis methods can be developed by using technologies such as artificial intelligence and machine learning.
DOI10.1109/ISCTURKEY53027.2021.9654328
Citation Keykanca_sharing_2021