undefined

Blockchain and explainable AI for enhanced decision making in cyber threat detection

Publiceringsår

2024

Upphovspersoner

Kumar Prabhat; Javeed Danish; Kumar Randhir; Islam AKM Najmul

Abstrakt

Artificial Intelligence (AI) based cyber threat detection tools are widely used to process and analyze a large amount of data for improved intrusion detection performance. However, these models are often considered as black box by the cybersecurity experts due to their inability to comprehend or interpret the reasoning behind the decisions. Moreover, AI-based threat hunting is data-driven and is usually modeled using the data provided by multiple cloud vendors. This is another critical challenge, as a malicious cloud can provide false information (i.e., insider attacks) and can degrade the threat-hunting capability. In this paper, we present a blockchain-enabled eXplainable AI (XAI) for enhancing the decision-making capability of cyber threat detection in the context of Smart Healthcare Systems. Specifically, first, we use blockchain to validate and store data between multiple cloud vendors by implementing a Clique Proof-of-Authority (C-PoA) consensus. Second, a novel deep learning-based threat-hunting model is built by combining Parallel Stacked Long Short Term Memory (PSLSTM) networks with a multi-head attention mechanism for improved attack detection. The extensive experiment confirms its potential to be used as an enhanced decision support system by cybersecurity analysts.
Visa mer

Organisationer och upphovspersoner

Publikationstyp

Publikationsform

Artikel

Moderpublikationens typ

Tidning

Artikelstyp

En originalartikel

Målgrupp

Vetenskaplig

Kollegialt utvärderad

Kollegialt utvärderad

UKM:s publikationstyp

A1 Originalartikel i en vetenskaplig tidskrift

Publikationskanalens uppgifter

Förläggare

Wiley: 12 months

Volym

54

Nummer

8

Sidor

1337-1360

Publikationsforum

67354

Publikationsforumsnivå

2

Öppen tillgång

Öppen tillgänglighet i förläggarens tjänst

Ja

Öppen tillgång till publikationskanalen

Delvis öppen publikationskanal

Parallellsparad

Nej

Övriga uppgifter

Vetenskapsområden

Data- och informationsvetenskap

Identifierade tema

[object Object]

Förlagets internationalitet

Internationell

Internationell sampublikation

Ja

Sampublikation med ett företag

Nej

DOI

10.1002/spe.3319

Publikationen ingår i undervisnings- och kulturministeriets datainsamling

Ja