Real-Time Automatic Framework for IRC Threat Information Detection
Sicong Shao · 2017
Traditional research in the cyber security domain mainly focus on enhancing security of computers, information systems, and network infrastructures [1]; however, studies are still ineffective against protecting the systems and combatting against attacks. Instead of adopting reactive methods to protect cyberspace against cyberattacks, understanding the motivation, mind, and approach of the attackers will allow the security experts the ability to defend their cyberspace in a proactive manner. Such a model and behavior analysis can be obtained by monitoring and analysis of social media and Internet communication channels. Among them Internet-Relay-Chat (IRC) has been actively used by the security groups (both malicious and non-malicious) to share their knowledge and get help because IRC provides real-time responses. Analysis of IRC hacker channel data aid security experts to reveal the potential cyberspace risk, hacker behavior and networking, thus contributing to proactive response for hacker attack.