CyberSANE

Cyber Security Incident Handling, Warning and Response System for the European Critical Infrastructures

CyberSANE is a project focused on securing and projecting Critical Information Infrastructures (CIIs), aiming to enhance their resilience against evolving cyber threats. It seeks to use Artificial Intelligence and other tools, to address vulnerabilities arising from the increased reliance on ICT components and technologies. The project aims to counter advanced cyberattacks, which leverage multi-stage techniques like social engineering, zero-day exploits, and malware to bypass security defenses and extract sensitive data. By understanding the changing threat landscape and attack vectors, CyberSANE intends to develop robust measures to protect valuable assets within CIIs, ensuring their safety, scalability, and efficiency.

Project Goals
– Optimize collaboration and interaction among CII operators.
– Develop taxonomies and models for Advanced Persistent Threats (APTs) in CIIs.
– Unite web crawling and data aggregation for structured and efficient data analysis.
– Create privacy-aware techniques for analyzing large datasets to detect malicious actions.
– Specify forecasting models to support CII operators and security experts.
– Establish a simulation environment for analyzing and mitigating security events.
– Standardize information-sharing protocols among relevant stakeholders.
– Facilitate secure, privacy-aware communication and storage of forensic data.
– Integrate CyberSANE components into a functional system (TRL6).
– Validate the CyberSANE system in real-world operational environments.

CyberSANE article on Cordis: https://cordis.europa.eu/article/id/442939-cybersane-safeguards-critical-information-infrastructures
CyberSANE leader: PDMFC