Incident taxonomy analysis on MISP using a quantitative threat assessment approach

Muttaqin, Fadhlan Zaky and Salamun, Muhammad Arfan and Rosyid, Nur Rohman (2023) Incident taxonomy analysis on MISP using a quantitative threat assessment approach. In: THE 7TH INTERNATIONAL CONFERENCE ON SCIENCE AND TECHNOLOGY, 7-8 September 2021, Yogyakarta.

Full text not available from this repository. (Request a copy)

Abstract

Prioritizing cyber threats is essential to security systems as the number of cyber threats grows. Cyberthreat prioritization helps determine the appropriate response in addressing an incident. Assessing the severity level of cyber threats is one approach that can be used. This assessment process can utilize an incident taxonomy found in the threat intelligence platform. One of the widely used platforms is Malware Information Sharing Platform (MISP), an open-source threat-intelligence platform used to collaborate, share, and store Indicator of Compromise (IoC) of an incident. However, an incident taxonomy should have a numerical value in order to use it as a parameter in incident severity score calculation. Therefore, it is necessary to analyze and process the taxonomy data. This research analyzes incident taxonomy to generate numerical values representing the severity score of each taxonomy in numerical form using the existing quantitative threat assessment method. Thus, the incident taxonomy can be used as a parameter for calculating the severity score of occurred incidents. © 2023 Author(s).

Item Type: Conference or Workshop Item (Paper)
Additional Information: Cited by: 0
Subjects: T Technology > TK Electrical engineering. Electronics Nuclear engineering
Divisions: Vocational School
Depositing User: Sri JUNANDI
Date Deposited: 03 Nov 2024 21:57
Last Modified: 03 Nov 2024 21:57
URI: https://ir.lib.ugm.ac.id/id/eprint/10523

Actions (login required)

View Item
View Item