posted on 2023-08-30, 20:29authored byShareeful Islam, Spyridon Papastergiou, Stefano Silvestri
Cyber threats in the healthcare sector have increased significantly in recent years. Attackers are now using sophisticated techniques to launch multi-phase cyber attacks to compromise the system and leak patient healthcare data. Healthcare organisations need to protect IT infrastructures and understand the threats and possible attack surface for a secure healthcare service delivery. Hence, threat analysis is one of the key activities for tackling the potential risks and ensuring security of a system context. This work presents a threat analysis approach that allows to identify and assess the possible threats within healthcare information infrastructure. The approach considers the existing threat data from widely used repositories and uses Natural Language Processing to identify threats among cyber security news, also evaluating their corresponding level. The preliminary experimental assessment shows promising results, providing a realistic manner to assess the threats, allowing to adopt the proposed approach in real-world contexts.