NLP-Based Techniques for Cyber Threat Intelligence
Marco Arazzi, Dincy R. Arikkat, Serena Nicolazzo, Antonino Nocera,, Rafidha Rehiman K. A., Vinod P., Mauro Conti

TL;DR
This paper surveys NLP techniques applied to Cyber Threat Intelligence, covering data collection, analysis, relation extraction, sharing, and challenges, highlighting their role in enhancing cybersecurity defenses.
Contribution
It provides a comprehensive overview of NLP-based methods in CTI, including frameworks, applications, and challenges, serving as a valuable resource for researchers and security professionals.
Findings
NLP techniques improve data crawling and analysis in CTI.
Relation extraction enhances understanding of cyber threats.
Challenges include data quality and ethical issues.
Abstract
In the digital era, threat actors employ sophisticated techniques for which, often, digital traces in the form of textual data are available. Cyber Threat Intelligence~(CTI) is related to all the solutions inherent to data collection, processing, and analysis useful to understand a threat actor's targets and attack behavior. Currently, CTI is assuming an always more crucial role in identifying and mitigating threats and enabling proactive defense strategies. In this context, NLP, an artificial intelligence branch, has emerged as a powerful tool for enhancing threat intelligence capabilities. This survey paper provides a comprehensive overview of NLP-based techniques applied in the context of threat intelligence. It begins by describing the foundational definitions and principles of CTI as a major tool for safeguarding digital assets. It then undertakes a thorough examination of…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
Taxonomy
TopicsAdvanced Malware Detection Techniques · Cybercrime and Law Enforcement Studies · Information and Cyber Security
