Matching Items (2,877)
Filtering by

Clear all filters

155561-Thumbnail Image.png
Description
Field of cyber threats is evolving rapidly and every day multitude of new information about malware and Advanced Persistent Threats (APTs) is generated in the form of malware reports, blog articles, forum posts, etc. However, current Threat Intelligence (TI) systems have several limitations. First, most of the TI systems examine

Field of cyber threats is evolving rapidly and every day multitude of new information about malware and Advanced Persistent Threats (APTs) is generated in the form of malware reports, blog articles, forum posts, etc. However, current Threat Intelligence (TI) systems have several limitations. First, most of the TI systems examine and interpret data manually with the help of analysts. Second, some of them generate Indicators of Compromise (IOCs) directly using regular expressions without understanding the contextual meaning of those IOCs from the data sources which allows the tools to include lot of false positives. Third, lot of TI systems consider either one or two data sources for the generation of IOCs, and misses some of the most valuable IOCs from other data sources.

To overcome these limitations, we propose iGen, a novel approach to fully automate the process of IOC generation and analysis. Proposed approach is based on the idea that our model can understand English texts like human beings, and extract the IOCs from the different data sources intelligently. Identification of the IOCs is done on the basis of the syntax and semantics of the sentence as well as context words (e.g., ``attacked'', ``suspicious'') present in the sentence which helps the approach work on any kind of data source. Our proposed technique, first removes the words with no contextual meaning like stop words and punctuations etc. Then using the rest of the words in the sentence and output label (IOC or non-IOC sentence), our model intelligently learn to classify sentences into IOC and non-IOC sentences. Once IOC sentences are identified using this learned Convolutional Neural Network (CNN) based approach, next step is to identify the IOC tokens (like domains, IP, URL) in the sentences. This CNN based classification model helps in removing false positives (like IPs which are not malicious). Afterwards, IOCs extracted from different data sources are correlated to find the links between thousands of apparently unrelated attack instances, particularly infrastructures shared between them. Our approach fully automates the process of IOC generation from gathering data from different sources to creating rules (e.g. OpenIOC, snort rules, STIX rules) for deployment on

the security infrastructure.

iGen has collected around 400K IOCs till now with a precision of 95\%, better than any state-of-art method.
ContributorsPanwar, Anupam (Author) / Ahn, Gail-Joon (Thesis advisor) / Doupe, Adam (Committee member) / Zhao, Ziming (Committee member) / Arizona State University (Publisher)
Created2017
174861-Thumbnail Image.jpg
Created1925-19-39 (uncertain)
174868-Thumbnail Image.jpg
Created1934
174924-Thumbnail Image.jpg
Created1926
174931-Thumbnail Image.jpg
Created1926
174934-Thumbnail Image.jpg
Created1926
174981-Thumbnail Image.jpg
Created1928
Description

Human Papillomavirus, or HPV, is a viral pathogen that most commonly spreads through sexual contact. HPV strains 6 and 11 normally cause genital warts, while HPV strains 16 and 18 commonly cause cervical cancer, which causes cancerous cells to spread in the cervix. Physicians can detect those HPV strains, using

Human Papillomavirus, or HPV, is a viral pathogen that most commonly spreads through sexual contact. HPV strains 6 and 11 normally cause genital warts, while HPV strains 16 and 18 commonly cause cervical cancer, which causes cancerous cells to spread in the cervix. Physicians can detect those HPV strains, using a Pap smear, which is a diagnostic test that collects cells from the female cervix.

Created2021-04-06
Description

Johann Gregor Mendel studied patterns of trait inheritance in plants during the nineteenth century. Mendel, an Augustinian monk, conducted experiments on pea plants at St. Thomas’ Abbey in what is now Brno, Czech Republic. Twentieth century scientists used Mendel’s recorded observations to create theories about genetics.

Created2022-01-13