Knowledge mining of unstructured information: application to cyber-domain
Takko, Tuomas, Bhattacharya, Kunal, Lehto, Martti, Jalasvirta, Pertti, Cederberg, Aapo, Kaski, Kimmo
–arXiv.org Artificial Intelligence
Information on cyber-related crimes, incidents, and conflicts is abundantly available in numerous open online sources. However, processing the large volumes and streams of data is a challenging task for the analysts and experts, and entails the need for newer methods and techniques. In this article we present and implement a novel knowledge graph and knowledge mining framework for extracting the relevant information from free-form text about incidents in the cyberdomain. The framework includes a machine learning based pipeline for generating graphs of organizations, countries, industries, products and attackers with a non-technical cyber-ontology. The extracted knowledge graph is utilized to estimate the incidence of cyberattacks on a given graph configuration. We use publicly available collections of real cyber-incident reports to test the efficacy of our methods. The knowledge extraction is found to be sufficiently accurate, and the graph-based threat estimation demonstrates a level of correlation with the actual records of attacks. In practical use, an analyst utilizing the presented framework can infer additional information from the current cyber-landscape in terms of risk to various entities and propagation of the risk heuristic between industries and countries.
arXiv.org Artificial Intelligence
Aug-1-2022
- Country:
- North America > United States
- New Mexico > Los Alamos County > Los Alamos (0.04)
- Europe
- United Kingdom (0.04)
- Norway (0.04)
- Finland > Central Finland
- Jyväskylä (0.04)
- Asia
- Middle East > UAE (0.04)
- Japan (0.04)
- India (0.04)
- Africa > Middle East
- North America > United States
- Genre:
- Research Report > New Finding (0.94)
- Industry:
- Information Technology > Security & Privacy (1.00)
- Health & Medicine (0.93)
- Government > Military
- Cyberwarfare (0.91)
- Technology: