• norsk
    • English
  • English 
    • norsk
    • English
  • Login
View Item 
  •   Home
  • Norges miljø- og biovitenskapelige universitet
  • Faculty of Science and Technology (RealTek)
  • Master's theses (RealTek)
  • View Item
  •   Home
  • Norges miljø- og biovitenskapelige universitet
  • Faculty of Science and Technology (RealTek)
  • Master's theses (RealTek)
  • View Item
JavaScript is disabled for your browser. Some features of this site may not work without it.

Knowledge Graphs for Software Security Assessments and Cyber Threat Intelligence.

Bhattacharya, Sougata
Master thesis
Thumbnail
View/Open
no.nmbu:wiseflow:7110333:59110541.pdf (1.371Mb)
URI
https://hdl.handle.net/11250/3147997
Date
2024
Metadata
Show full item record
Collections
  • Master's theses (RealTek) [1895]
Abstract
In the dynamic field of cybersecurity, the identification and mitigation of software vulnerabilities are critical for safeguarding digital infrastructures. This thesis explores the integration of Knowledge Graphs with language modeling techniques to enhance security assessments of Cyber Threat Intelligence reports. The research delves into the challenges faced by traditional machine learning approaches in predicting attack techniques from these reports and proposes a methodology that combines the strengths of Pretrained Language Models and Knowledge Embeddings to improve predictive accuracy. The study, utilizing the Threat Report ATT&CK Mapper dataset, expands on the Knowledge Embedding and Pre-trained LanguagE Representation model to encode textual Cyber Threat Intelligence descriptions into Knowledge Graph triples for training the Knowledge Embedding objective, while simultaneously using the same descriptions for training a Masked Language Model objective. The two top-performing models from this study show better Precision, Re-call, and F1 scores than the Threat Report ATT&CK Mapper tool when trained and evaluated on the same dataset. These findings suggest that the proposed approach is a viable method of predicting Attack Techniques from CTI reports. The thesis presents a practical approach to the application of Knowledge Graphs for cybersecurity, offering a framework for the automated analysis of cyber threats.
 
 
 
Publisher
Norwegian University of Life Sciences

Contact Us | Send Feedback

Privacy policy
DSpace software copyright © 2002-2019  DuraSpace

Service from  Unit
 

 

Browse

ArchiveCommunities & CollectionsBy Issue DateAuthorsTitlesSubjectsDocument TypesJournalsThis CollectionBy Issue DateAuthorsTitlesSubjectsDocument TypesJournals

My Account

Login

Statistics

View Usage Statistics

Contact Us | Send Feedback

Privacy policy
DSpace software copyright © 2002-2019  DuraSpace

Service from  Unit