{"title":"Towards a Functional and Trustful Web-based Information Sharing Center","authors":"Seyedeh Negar Khajeddin, Afsaneh Madani, Hossein Gharaee, Farzaneh Abazari","doi":"10.1109/ICWR.2019.8765297","DOIUrl":null,"url":null,"abstract":"As the underlying infrastructure of the Internet becomes more advanced and high-speed Internet access becomes more prevalent, the usage of web-based applications increases. Web applications provide users with a wide range of services, and providing a platform for sharing cyber security information is one of those. Studies have shown cyber actors mostly utilize the same techniques, tactics and procedures (TTPs) to attack different companies and platforms. Therefore, sharing threat data, best practices and countermeasures can help every participant in the sharing process to identify potential threats, mitigate their impacts or prevent far-reaching attacks from happening. Establishing a web-based information sharing center have been proved to be beneficial as a communication channel for assisting firms and organizations to promote their own cyber or physical security. Accordingly, in this paper we look at information sharing challenges and different trust models; we also present required technical methods, policies and regulations to overcome the introduced challenges by carefully studying established rules and regulations in the U.S. and European Union. The proposed technical methods, policies and regulations are beneficial for implementing a trustful web-based information sharing center. Finally, future work is outlined.","PeriodicalId":6680,"journal":{"name":"2019 5th International Conference on Web Research (ICWR)","volume":"41 1","pages":"252-257"},"PeriodicalIF":0.0000,"publicationDate":"2019-04-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"2","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2019 5th International Conference on Web Research (ICWR)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICWR.2019.8765297","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 2
Abstract
As the underlying infrastructure of the Internet becomes more advanced and high-speed Internet access becomes more prevalent, the usage of web-based applications increases. Web applications provide users with a wide range of services, and providing a platform for sharing cyber security information is one of those. Studies have shown cyber actors mostly utilize the same techniques, tactics and procedures (TTPs) to attack different companies and platforms. Therefore, sharing threat data, best practices and countermeasures can help every participant in the sharing process to identify potential threats, mitigate their impacts or prevent far-reaching attacks from happening. Establishing a web-based information sharing center have been proved to be beneficial as a communication channel for assisting firms and organizations to promote their own cyber or physical security. Accordingly, in this paper we look at information sharing challenges and different trust models; we also present required technical methods, policies and regulations to overcome the introduced challenges by carefully studying established rules and regulations in the U.S. and European Union. The proposed technical methods, policies and regulations are beneficial for implementing a trustful web-based information sharing center. Finally, future work is outlined.