A cloud-edge based data security architecture for sharing and analysing cyber threat information

David W. Chadwick*, Wenjun Fan, Gianpiero Costantino, Rogerio de Lemos, Francesco Di Cerbo, Ian Herwono, Mirko Manea, Paolo Mori, Ali Sajjad, Xiao Si Wang

*Corresponding author for this work

Research output: Contribution to journalArticlepeer-review

63 Citations (Scopus)

Abstract

Cyber-attacks affect every aspect of our lives. These attacks have serious consequences, not only for cyber-security, but also for safety, as the cyber and physical worlds are increasingly linked. Providing effective cyber-security requires cooperation and collaboration among all the entities involved. Increasing the amount of cyber threat information (CTI) available for analysis allows better prediction, prevention and mitigation of cyber-attacks. However, organizations are deterred from sharing their CTI over concerns that sensitive and confidential information may be revealed to others. We address this concern by providing a flexible framework that allows the confidential sharing of CTI for analysis between collaborators. We propose a five-level trust model for a cloud-edge based data sharing infrastructure. The data owner can choose an appropriate trust level and CTI data sanitization approach, ranging from plain text, through anonymization/pseudonymization to homomorphic encryption, in order to manipulate the CTI data prior to sharing it for analysis. Furthermore, this sanitization can be performed by either an edge device or by the cloud service provider, depending upon the level of trust the organization has in the latter. We describe our trust model, our cloud-edge infrastructure, and its deployment model, which are designed to satisfy the broadest range of requirements for confidential CTI data sharing. Finally we briefly describe our implementation and the testing that has been carried out so far by four pilot projects that are validating our infrastructure.

Original languageEnglish
Pages (from-to)710-722
Number of pages13
JournalFuture Generation Computer Systems
Volume102
DOIs
Publication statusPublished - Jan 2020
Externally publishedYes

Keywords

  • Cloud security
  • Cloud-edge trust
  • Cyber threat information
  • Data outsourcing
  • Data security architecture
  • Edge computing

Fingerprint

Dive into the research topics of 'A cloud-edge based data security architecture for sharing and analysing cyber threat information'. Together they form a unique fingerprint.

Cite this