Implementation of Token Parsing Technique for Regex Based Classification of Unstructured Data for Cyber Threat Analysis

Muhammad Hazim Mohd Pakhari, Norziana Jamil, Mohd Ezanee Rusli, Azril Azam Abdul Rahim

Research output: Chapter in Book/Report/Conference proceedingConference contribution

3 Citations (Scopus)

Abstract

Cyber Threat Intelligence (CTI) is a concept for information about cyber threats which were analysed, structured, and refined. This information is used to help organizations to understand the current risk that have different levels that might bring harm to their enterprises. Besides, CTI can also help organizations to plan for defensive countermeasures and protect themselves from the attacks that can cause them damage. In this paper, we introduce a token parsing technique for regex based classification of unstructured data for cyber threat analytic (CTA) engine that does threat analysis based on data crawled from several public resources. Our engine crawls and fetch data from the public resource in time series, analyse the data and provide a meaningful information to the user with the timeline of the fetched parameter. The collected data which appears as non-structured are converted by the engine to appear as a structured data and then be inserted into the database. Subsequently, the engine then analyses the threat data by modelling it before useful information be returned to the user. The challenge is to have a structured data useful for analysis. This paper explains how our token parsing technique is useful in regex based classification to convert the unstructured data into useful structured data.

Original languageEnglish
Title of host publication2020 8th International Conference on Information Technology and Multimedia, ICIMU 2020
PublisherInstitute of Electrical and Electronics Engineers Inc.
Pages395-398
Number of pages4
ISBN (Electronic)9781728173108
DOIs
Publication statusPublished - Aug 24 2020
Externally publishedYes
Event8th International Conference on Information Technology and Multimedia, ICIMU 2020 - Selangor, Malaysia
Duration: Aug 24 2020Aug 25 2020

Publication series

Name2020 8th International Conference on Information Technology and Multimedia, ICIMU 2020

Conference

Conference8th International Conference on Information Technology and Multimedia, ICIMU 2020
Country/TerritoryMalaysia
CitySelangor
Period8/24/208/25/20

Keywords

  • Cyber Threat Analysis
  • Cyber Threat Intelligence
  • Pastebin
  • Threat Intelligence
  • Threat Modeling

ASJC Scopus subject areas

  • Information Systems
  • Software
  • Computer Networks and Communications
  • Computer Science Applications

Fingerprint

Dive into the research topics of 'Implementation of Token Parsing Technique for Regex Based Classification of Unstructured Data for Cyber Threat Analysis'. Together they form a unique fingerprint.

Cite this