<?xml version="1.0" encoding="utf-8"?>
<!DOCTYPE article PUBLIC "-//NLM//DTD JATS (Z39.96) Journal Publishing DTD v1.3 20210610//EN" "https://jats.nlm.nih.gov/publishing/1.3/JATS-journalpublishing1-3.dtd">
<article article-type="research-article" dtd-version="1.3" xml:lang="en">
  <front xmlns:xlink="http://www.w3.org/1999/xlink">
    <journal-meta>
      <journal-id journal-id-type="elibrary">9004</journal-id>
      <journal-title-group>
        <journal-title>Problems of information security. Computer systems</journal-title>
        <trans-title-group xml:lang="ru">
          <trans-title>Проблемы информационной безопасности. Компьютерные системы</trans-title>
        </trans-title-group>
      </journal-title-group>
      <issn pub-type="epub">2071-8217</issn>
    </journal-meta>
    <article-meta xmlns:xlink="http://www.w3.org/1999/xlink">
      <article-id pub-id-type="publisher-id">12</article-id>
      <article-id pub-id-type="doi">10.48612/jisp/1nen-rerv-vr94</article-id>
      <title-group>
        <article-title>Assessment of the descriptive ability of modern data sources for analyzing cyber security threats</article-title>
        <trans-title-group xml:lang="ru">
          <trans-title>Оценка описательной способности современных источников данных для анализа угроз компьютерной безопасности</trans-title>
        </trans-title-group>
      </title-group>
      <contrib-group>
        <contrib contrib-type="author">
          <contrib-id contrib-id-type="orcid">0000-0003-1511-9971</contrib-id>
          <name>
            <surname>Polosukhin</surname>
            <given-names>Nikita</given-names>
          </name>
          <xref ref-type="aff" rid="aff1"/>
          <email>polosukhin.ibks@spbstu.ru</email>
        </contrib>
      </contrib-group>
      <aff id="aff1">Peter the Great St. Petersburg Polytechnic University</aff>
      <pub-date publication-format="electronic" date-type="pub" iso-8601-date="2024-08-01">
        <day>01</day>
        <month>08</month>
        <year>2024</year>
      </pub-date>
      <issue>Спецвыпуск</issue>
      <fpage>129</fpage>
      <lpage>145</lpage>
      <self-uri xmlns:xlink="http://www.w3.org/1999/xlink" content-type="pdf" xlink:href="https://jisp.spbstu.ru/userfiles/files/soderzhaniya/2024_spetsvipusk-7-8.pdf"/>
      <abstract xml:lang="en">
        <p>This article proposes a classification of attributes of cybersecurity threats. A statistical study of the descriptive power of an open and closed threat dataset is presented. An expert study of an advanced persistent threat was also conducted using open reports as an example. The completeness of the threat description, as well as the ability of modern tools and protocols to describe such a threat, are assessed. The main conclusion is that current approaches to describing cybersecurity threats have shortcomings that prevent the most effective use of such information in operational activities</p>
      </abstract>
      <kwd-group xml:lang="en">
        <kwd>cybersecurity threats</kwd>
        <kwd>“pyramid of pain”</kwd>
        <kwd>tactics</kwd>
        <kwd>techniques and procedures</kwd>
        <kwd>threat description protocols</kwd>
      </kwd-group>
    </article-meta>
  </front>
</article>
