SeCTIS: A Framework to Secure CTI Sharing

Fuente: arXiv
Guardado en:
Detalles Bibliográficos
Autores principales: Arikkat, Dincy R., Cihangiroglu, Mert, Conti, Mauro, A., Rafidha Rehiman K., Nicolazzo, Serena, Nocera, Antonino, P, Vinod
Formato: Preprint
Publicado: 2024
Materias:
Acceso en línea:
Etiquetas: Agregar Etiqueta
Sin Etiquetas, Sea el primero en etiquetar este registro!
_version_ 1866916295780335616
author Arikkat, Dincy R.
Cihangiroglu, Mert
Conti, Mauro
A., Rafidha Rehiman K.
Nicolazzo, Serena
Nocera, Antonino
P, Vinod
author_facet Arikkat, Dincy R.
Cihangiroglu, Mert
Conti, Mauro
A., Rafidha Rehiman K.
Nicolazzo, Serena
Nocera, Antonino
P, Vinod
contents The rise of IT-dependent operations in modern organizations has heightened their vulnerability to cyberattacks. As a growing number of organizations include smart, interconnected devices in their systems to automate their processes, the attack surface becomes much bigger, and the complexity and frequency of attacks pose a significant threat. Consequently, organizations have been compelled to seek innovative approaches to mitigate the menaces inherent in their infrastructure. In response, considerable research efforts have been directed towards creating effective solutions for sharing Cyber Threat Intelligence (CTI). Current information-sharing methods lack privacy safeguards, leaving organizations vulnerable to leaks of both proprietary and confidential data. To tackle this problem, we designed a novel framework called SeCTIS (Secure Cyber Threat Intelligence Sharing), integrating Swarm Learning and Blockchain technologies to enable businesses to collaborate, preserving the privacy of their CTI data. Moreover, our approach provides a way to assess the data and model quality, and the trustworthiness of all the participants leveraging some validators through Zero Knowledge Proofs. An extensive experimental campaign demonstrates our framework's correctness and performance, and the detailed attack model discusses its robustness against attacks in the context of data and model quality.
format Preprint
id arxiv_https___arxiv_org_abs_2406_14102
institution arXiv
publishDate 2024
record_format arxiv
spellingShingle SeCTIS: A Framework to Secure CTI Sharing
Arikkat, Dincy R.
Cihangiroglu, Mert
Conti, Mauro
A., Rafidha Rehiman K.
Nicolazzo, Serena
Nocera, Antonino
P, Vinod
Cryptography and Security
The rise of IT-dependent operations in modern organizations has heightened their vulnerability to cyberattacks. As a growing number of organizations include smart, interconnected devices in their systems to automate their processes, the attack surface becomes much bigger, and the complexity and frequency of attacks pose a significant threat. Consequently, organizations have been compelled to seek innovative approaches to mitigate the menaces inherent in their infrastructure. In response, considerable research efforts have been directed towards creating effective solutions for sharing Cyber Threat Intelligence (CTI). Current information-sharing methods lack privacy safeguards, leaving organizations vulnerable to leaks of both proprietary and confidential data. To tackle this problem, we designed a novel framework called SeCTIS (Secure Cyber Threat Intelligence Sharing), integrating Swarm Learning and Blockchain technologies to enable businesses to collaborate, preserving the privacy of their CTI data. Moreover, our approach provides a way to assess the data and model quality, and the trustworthiness of all the participants leveraging some validators through Zero Knowledge Proofs. An extensive experimental campaign demonstrates our framework's correctness and performance, and the detailed attack model discusses its robustness against attacks in the context of data and model quality.
title SeCTIS: A Framework to Secure CTI Sharing
topic Cryptography and Security
url https://arxiv.org/abs/2406.14102