Fetching the paper…
Reading the bibliography…
Cyber attacks are becoming more sophisticated and diverse, making detection increasingly challenging.
Liao, X., Yuan, K., Wang, X., et al.: Acing the IOC Game: Toward Automatic Discovery and Analysis of Open-Source Cyber Threat Intelligence. In: CCS (2016)
2016
Earlier work this paper cites.
Husari, G., Al-Shaer, E., Ahmed, M., Chu, B., Niu, X.: TTPDrill: Automatic and accurate extraction of threat actions from unstructured text of CTI Sources. In: ACM International Conference Proceeding Series. vol. Part F1325 (2017)
2017
Earlier work this paper cites.
Ramnani, R.R., Shivaram, K., Sengupta, S.: Semi-automated information extraction from unstructured threat advisories. In: Proceedings of the 10th Innovations in Software Engineering Conference. pp. 181–187 (2017)
2017
Earlier work this paper cites.
Multiple Cobalt Personality Disorder, https://blog.talosintelligence.com/2018/07/multiple-cobalt-personality-disorder.html
2018
Earlier work this paper cites.
Ghazi, Y., Anwar, Z., Mumtaz, R., Saleem, S., Tahir, A.: A supervised machine learning based approach for automatically extracting high-level threat intelligence from unstructured sources. In: 2018 International Conference on Frontiers of Information Technology (FIT). pp. 129–134. IEEE (2018)
2018
Earlier work this paper cites.
Husari, G., Niu, X., Chu, B., Al-Shaer, E.: Using entropy and mutual information to extract threat actions from cyber threat intelligence. In: 2018 IEEE International Conference on Intelligence and Security Informatics (ISI). pp. 1–6. IEEE (2018)
2018
Earlier work this paper cites.
Mu, D., Cuevas, A., Yang, L., et al.: Understanding the reproducibility of crowd-reported security vulnerabilities. In: Usenix Security Symposium (2018)
2018
Earlier work this paper cites.
Zhu, Z., Dumitras, T.: ChainSmith: Automatically Learning the Semantics of Malicious Campaigns by Mining Threat Intelligence Reports. In: IEEE European Symposium on Security and Privacy (2018)
2018
Earlier work this paper cites.
Frankenstein Campaign, https://blog.talosintelligence.com/2019/06/frankenstein-campaign.html
2019
Cited alongside, same era.
Kurogome, Y., Otsuki, Y., et al.: Eiger: Automated IOC generation for accurate and interpretable endpoint malware detection. In: ACM ACSAC (2019)
2019
Cited alongside, same era.
Li, G., Dunn, M., Pearce, P., et al.: Reading the Tea Leaves: A Comparative Analysis of Threat Intelligence. In: Usenix Security Symposium (2019)
2019
Cited alongside, same era.
Milajerdi, S.M., Gjomemo, R., Eshete, B., et al.: Poirot: Aligning attack behavior with kernel audit records for cyber threat hunting. In: CCS (nov 2019)
2019
Cited alongside, same era.
Momeni Milajerdi, S., Gjomemo, R., et al.: HOLMES: Real-time APT detection through correlation of suspicious information flows. In: IEEE S&P (2019)
2019
Cited alongside, same era.
2020
Later among the works it cites.
Microsoft says SolarWinds hackers stole source code for 3 products, https://arstechnica.com/information-technology/2021/02/microsoft-says-solarwinds-hackers-stole-source-code-for-3-products
2021
Closest in time.
Gao, P., Liu, X., Choi, E., et al.: A system for automated open-source threat intelligence gathering and management. In: SIGMOD (2021)
2021
Closest in time.
Gao, P., Shao, F., Liu, X., et al.: Enabling Efficient Cyber Threat Hunting With Cyber Threat Intelligence. ICDE (2021)
2021
Closest in time.
Li, Z., Chen, Q.A., Yang, R., Chen, Y.: Threat Detection and Investigation with System-level Provenance Graphs: A Survey. Computer & Security 106
alphaXiv searches the wider corpus for related work and actual follow-ups.
alphaXiv is searching for related work…
OceanLotus: Extending Cyber Espionage Operations Through Fake Websites (2021), https://www.volexity.com/blog/2020/11/06/oceanlotus-extending-cyber-espionage-operations-through-fake-websites/
2020
Cited alongside, same era.
Hassan, W.U., Bates, A., Marino, D.: Tactical provenance analysis for endpoint detection and response systems. In: IEEE S&P (2020)
2020
Cited alongside, same era.
Hossain, M.N., Sheikhi, S., Sekar, R.: Combating dependence explosion in forensic analysis using alternative tag propagation semantics. In: IEEE S&P (2020)
2020
Cited alongside, same era.
AlienVault OTX, https://otx.alienvault.com
Cited in the paper.
Atomic Red Team, https://github.com/redcanaryco/atomic-red-team
Cited in the paper.
Cisco Talos Intelligence Group - Comprehensive Threat Intelligence, https://blog.talosintelligence.com/
Cited in the paper.
CybOX - Cyber Observable Expression, https://cyboxproject.github.io/
Cited in the paper.
2021
Closest in time.
Satvat, K., Gjomemo, R., Venkatakrishnan, V.: Extractor: Extracting attack behavior from threat reports. In: IEEE EuroS&P (2021)
2021
Closest in time.
Uetz, R., Hemminghaus, C., Hackländer, L., et al.: Reproducible and adaptable log data generation for sound cybersecurity experiments. In: Annual Computer Security Applications Conference. pp. 690–705 (2021)
2021
Closest in time.