A programmable threat intelligence framework for containerized clouds

dc.contributor.author Cagatay Yucel
dc.contributor.author Ahmet Hasan Koltuksuz
dc.contributor.author Murat Odemis
dc.contributor.author Anas Maazu Kademi
dc.contributor.author İzzet Gökhan Özbilgin
dc.contributor.editor J.S. Hurley , J.Q. Chen
dc.date.accessioned 2025-10-06T17:51:47Z
dc.date.issued 2018
dc.description.abstract Contemporarily one of the main challenges for information security community is the growing number of cyber threats. Large scaled globally orchestrated and constantly evolving attacks are affecting our information systems and technologies every day. Therefore collection and the exchange of cyber threat intelligence is of supreme importance. The term Cyber Threat Intelligence (CTI) has emerged with the contemporary because of merging the cyber intelligence concepts with the risk and threat management in cyber space. Today a number of security companies provide cyber threat intelligence with their sensors deployed worldwide Security Information and Event Management (SIEM) software and Intrusion Detection and Prevention Systems (IDPS) working collaboratively. The collection of Cyber Threat Intelligence is the process of collecting and producing actionable information of threats and threat actors aimed at increasing awareness and operational capabilities upon recognition of attack and attempt scenarios in a timely fashion. This research aims to investigate the recent developments of SDN and Containerized Clouds with a security perspective. The implementation of a containerized cloud with a programmable network of honeypot is implemented in this research. The implementation is tested with a scenario where a propagation of a worm that is originated from an infected container image. The security mechanisms on the cloud are fed with the collected CTI and results of the experiments along with discussions are presented. © 2018 Elsevier B.V. All rights reserved.
dc.identifier.isbn 9781911218746
dc.identifier.uri https://www.scopus.com/inward/record.uri?eid=2-s2.0-85051719490&partnerID=40&md5=4904e6ef2186be5fc0b031b0315c8363
dc.identifier.uri https://gcris.yasar.edu.tr/handle/123456789/9620
dc.language.iso English
dc.publisher Academic Conferences and Publishing International Limited
dc.relation.ispartof 13th International Conference on Cyber Warfare and Security ICCWS 2018
dc.subject Cloud Security, Containerized Clouds, Cyber Threat Intelligence, Sdn, Computer Crime, Containers, Intrusion Detection, Network Security, Cloud Securities, Cyber Threats, Information Systems And Technologies, Intrusion Detection And Prevention Systems, Operational Capabilities, Programmable Network, Security Information And Event Management (siem), Security Mechanism, Information Management
dc.subject Computer crime, Containers, Intrusion detection, Network security, Cloud securities, Cyber threats, Information systems and technologies, Intrusion detection and prevention systems, Operational capabilities, Programmable network, Security information and event management (SIEM), Security mechanism, Information management
dc.title A programmable threat intelligence framework for containerized clouds
dc.type Conference Object
dspace.entity.type Publication
gdc.coar.type text::conference output
gdc.index.type Scopus
oaire.citation.endPage 510
oaire.citation.startPage 503
person.identifier.scopus-author-id Yucel- Cagatay (56285502500), Koltuksuz- Ahmet Hasan (13408802300), Odemis- Murat (57195415972), Kademi- Anas Maazu (57195423407), Özbilgin- İzzet Gökhan (37017416700)
publicationvolume.volumeNumber 2018-March
relation.isOrgUnitOfPublication ac5ddece-c76d-476d-ab30-e4d3029dee37
relation.isOrgUnitOfPublication.latestForDiscovery ac5ddece-c76d-476d-ab30-e4d3029dee37

Files