Cognitive Techniques for Early Detection of Cybersecurity Events

08/01/2018
by   Sandeep Narayanan, et al.
0

The early detection of cybersecurity events such as attacks is challenging given the constantly evolving threat landscape. Even with advanced monitoring, sophisticated attackers can spend as many as 146 days in a system before being detected. This paper describes a novel, cognitive framework that assists a security analyst by exploiting the power of semantically rich knowledge representation and reasoning with machine learning techniques. Our Cognitive Cybersecurity system ingests information from textual sources, and various agents representing host and network-based sensors, and represents this information in a knowledge graph. This graph uses terms from an extended version of the Unified Cybersecurity Ontology. The system reasons over the knowledge graph to derive better actionable intelligence to security administrators, thus decreasing their cognitive load and increasing their confidence in the system. We have developed a proof of concept framework for our approach and demonstrate its capabilities using a custom-built ransomware instance that is similar to WannaCry.

READ FULL TEXT
research
05/07/2019

RelExt: Relation Extraction using Deep Learning approaches for Cybersecurity Knowledge Graph Improvement

Security Analysts that work in a `Security Operations Center' (SoC) play...
research
06/24/2021

Pattern-based Visualization of Knowledge Graphs

We present a novel approach to knowledge graph visualization based on on...
research
03/23/2021

Actionable Cognitive Twins for Decision Making in Manufacturing

Actionable Cognitive Twins are the next generation Digital Twins enhance...
research
09/08/2021

Knowledge mining of unstructured information: application to cyber-domain

Cyber intelligence is widely and abundantly available in numerous open o...
research
08/04/2023

Creating Android Malware Knowledge Graph Based on a Malware Ontology

As mobile and smart connectivity continue to grow, malware presents a pe...
research
05/03/2023

On the Security Risks of Knowledge Graph Reasoning

Knowledge graph reasoning (KGR) – answering complex logical queries over...

Please sign up or login with your details

Forgot password? Click here to reset