Communication publiée dans un ouvrage (Colloques, congrès, conférences scientifiques et actes)
What's in a Cyber Threat Intelligence sharing platform?: A mixed-methods user experience investigation of MISP
STOJKOVSKI, Borce; LENZINI, Gabriele; KOENIG, Vincent et al.
2021In Annual Computer Security Applications Conference (ACSAC ’21)
Peer reviewed
 

Documents


Texte intégral
ACSAC21-MISP.pdf
Postprint Éditeur (1.29 MB)
Télécharger

Tous les documents dans ORBilu sont protégés par une licence d'utilisation.

Envoyer vers



Détails



Mots-clés :
user studies; user experience; usability; cyber threat intelligence; information sharing; sharing platforms
Résumé :
[en] The ever-increasing scale and complexity of cyber attacks and cyber-criminal activities necessitate secure and effective sharing of cyber threat intelligence (CTI) among a diverse set of stakeholders and communities. CTI sharing platforms are becoming indispensable tools for cooperative and collaborative cybersecurity. Nevertheless, despite the growing research in this area, the emphasis is often placed on the technical aspects, incentives, or implications associated with CTI sharing, as opposed to investigating challenges encountered by users of such platforms. To date, user experience (UX) aspects remain largely unexplored. This paper offers a unique contribution towards understanding the constraining and enabling factors of security information sharing within one of the leading platforms. MISP is an open source CTI sharing platform used by more than 6,000 organizations worldwide. As a technically-advanced CTI sharing platform it aims to cater for a diverse set of security information workers with distinct needs and objectives. In this respect, MISP has to pay an equal amount of attention to the UX in order to maximize and optimize the quantity and quality of threat information that is contributed and consumed. Using mixed methods we shed light on the strengths and weaknesses of MISP from an end-users’ perspective and discuss the role UX could play in effective CTI sharing. We conclude with an outline of future work and open challenges worth further exploring in this nascent, yet highly important socio-technical context.
Centre de recherche :
- Interdisciplinary Centre for Security, Reliability and Trust (SnT) > Other
Disciplines :
Sciences informatiques
Auteur, co-auteur :
STOJKOVSKI, Borce ;  University of Luxembourg > Interdisciplinary Centre for Security, Reliability and Trust (SNT) > IRiSC
LENZINI, Gabriele  ;  University of Luxembourg > Interdisciplinary Centre for Security, Reliability and Trust (SNT) > IRiSC
KOENIG, Vincent ;  University of Luxembourg > Faculty of Humanities, Education and Social Sciences (FHSE) > Department of Behavioural and Cognitive Sciences (DBCS)
RIVAS, Salvador  ;  University of Luxembourg > Faculty of Humanities, Education and Social Sciences (FHSE) > LUCET
Co-auteurs externes :
no
Langue du document :
Anglais
Titre :
What's in a Cyber Threat Intelligence sharing platform?: A mixed-methods user experience investigation of MISP
Date de publication/diffusion :
décembre 2021
Nom de la manifestation :
Annual Computer Security Applications Conference (ACSAC ’21)
Organisateur de la manifestation :
ACM
Lieu de la manifestation :
Virtual Event, Etats-Unis
Date de la manifestation :
6/12/2021 to 10/12/2021
Manifestation à portée :
International
Titre de l'ouvrage principal :
Annual Computer Security Applications Conference (ACSAC ’21)
Maison d'édition :
ACM, New York, NY, Etats-Unis
ISBN/EAN :
978-1-4503-8579-4
Collection et n° de collection :
ACSAC
Pagination :
385–398
Peer reviewed :
Peer reviewed
Focus Area :
Security, Reliability and Trust
Projet FnR :
FNR10621687 - Security And Privacy For System Protection, 2015 (01/01/2017-30/06/2023) - Sjouke Mauw
Organisme subsidiant :
FNR - Fonds National de la Recherche
Disponible sur ORBilu :
depuis le 01 octobre 2021

Statistiques


Nombre de vues
584 (dont 31 Unilu)
Nombre de téléchargements
975 (dont 18 Unilu)

citations Scopus®
 
18
citations Scopus®
sans auto-citations
18
OpenCitations
 
2
citations OpenAlex
 
15

Bibliographie


Publications similaires



Contacter ORBilu