securitylinkindia

Synergizing Artificial Intelligence and Human Analysis in Corporate Threat Intelligence

Lt. Col. Sushil Pradhan (R)Executive Director and COO, MitKat Advisory, Certified Data Centre Professional Co-authors Introduction Amid an evolving global environment characterized by socio-political turbulence, economic changes, supply chain disruptions, and climate change, businesses face various risks that threaten their operational capability. The need to continuously monitor relevant events and threat indicators has emerged to mitigate these risks promptly and effectively. Corporate threat intelligence is an essential tool to this end. It emphasizes proactive identification and mitigation of risks and enables timely reactions. Risks can be generated by regulatory changes, economic sanctions, upcoming civil unrest, extremism, terrorism, political changes etc. Modern threat intelligence integrates the capabilities of artificial intelligence (AI) and human analytical capabilities to address these issues. AI processes vast amounts of information and datasets through various sources like social media, open-source intelligence (OSINT), and government sources. In parallel, human analytical skill complements AI by interpreting, analyzing and contextualizing filtered information, and presenting it in the form of actionable intelligence that can enable viable options for decision-making. Corporate Threat Intelligence Today’s interconnected world features a dynamic and unpredictable operational environment. Dimensions like domestic politics, international relations, technological advancements, and civil unrest come into play, affecting a business environment. To adapt to these changes, corporations and businesses need a robust threat intelligence system to track, monitor, and manage these risks. Corporate threat intelligence has evolved beyond cybersecurity and now includes climate change, governance, political and economic stability, as well as regulatory policies. Businesses, especially MNCs, face diverse political and economic landscapes that pose adaptability issues as well as operational interruptions. Regime changes, sudden tariffs or sanctions, and regional conflicts are common in sensitive regions and impact business operations. For example, Houthis attacking commercial vessels in the Red Sea region has previously impacted the maritime trade route, adding to transportation and logistics costs. Corporate threat intelligence assists businesses in tracking and monitoring such events, thereby enabling effective risk mitigation strategies. Role of Artificial Intelligence in Threat Intelligence Productive threat analysis is an outcome of deciphering a vast amount of information within a specified timeframe. AI helps declutter irrelevant information, reduce noise, and provide relevant data. Threat intelligence traditionally relies on human analysts who used to surf the web, aggregate OSINT and analyze data manually. This approach was useful in providing depth and conceptual understanding but is labor-intensive and cannot keep up with the pace of the changing operational environment. The introduction of AI has provided a credible counter to these challenges. AI enables automated data collection and curation at an incredible speed. Synergizing Artificial Intelligence and Human Analysis Furthermore, AI also features 24/7 monitoring of relevant events, pattern and trend recognition, and regulatory compliance. AI’s integration with mass notification tools provides real-time updates, which nearly simultaneously enhances organizational awareness. For example, in the case of protests, AI continuously monitors media and social media to look for patterns and possible anomalies. AI can then notify the organization regarding possible supply chain disruptions due to the blockage of national highways, roads, or railway tracks, informing speedy decision-making. Role of Human Intelligence in Threat Intelligence AI has indeed revolutionized threat intelligence with its scalability and speed in processing vast amounts of data in a short period, as well as pattern and trend recognition. However, the role of human analysts remains irreplaceable. The human element of threat intelligence adds cultural context, deeper understanding, and strategic insight. Human analysts can identify the root causes of an event through cultural and contextual understanding while AI provides relevant data. AI excels at processing vast amounts of data and generating pattern analysis, which is difficult for a human analyst in the age of information overload. A human analyst focuses on building strategies and actionable steps to mitigate the risks based on the data provided by AI. For example, in case of a ransomware attack, AI will quickly identify the entry points and systems affected by the attack, while human analysts will focus on strategizing mitigation of the risk. Despite these advancements, vulnerabilities exist, thus making human collaboration an integral part of corporate threat intelligence. An important shortfall of AI integration in threat intelligence is the spread of disinformation and misinformation, which can be eliminated with human involvement, which includes verification of sources, checking patterns and inconsistencies, and flagging of issues considered false. This helps to bring in authenticity, reliability, and conceptualization, overcoming the deficiencies of AI. Future Applications Future applications of AI in threat intelligence include advancements like dynamic risk mapping and Geographic Information Systems (GIS), which will assist businesses in exposing geopolitical and geographical vulnerabilities, leading to a better understanding of the region of interest. One of the most important features of AI is Natural Language Processing (NLP), which enhances the language and dialect understanding of AI. It will help businesses to understand contextual and localized dynamics on a deeper level. Upcoming AI advancements like scenario simulations and advanced sentiment analysis will provide a deeper understanding of public opinion, predict upcoming events, and simulate them to effectively mitigate the risk early on. However, ethical concerns like data privacy and AI bias still cloud the capability of AI. Advancements like Explainable AI (XAI) can build transparency and trust, but the collaboration between AI and analysts will remain crucial, with humans contextualizing and conceptualizing information that AI refines through data made available to it. Conclusion Threat Intelligence has proved to be essential for businesses globally. Dynamically evolving operational environments necessitate innovative threat intelligence protection to safeguard critical assets, business operations, and reputation. AI has been a revolutionary part of corporate threat intelligence, and its scalability and speed have changed how we process the increasingly interconnected global risk landscape. AI has enabled real-time data analysis, pattern and trend recognition, sentiment analysis, and predictive modeling to identify risks early on. The synergy between AI and humans creates a feedback loop that enhances the relevance and accuracy of solutions to upcoming risks. This paves the way for a hybrid model which will allow for more accurate information as well as the most…

Read More

Digital Arrest: The Modern-Day Cyber Scam

Maj Sadhna Singh, Consultant What once began as harmless pranks in the early days of computers and the internet-where hackers focused on defacing websites and posting jokeshas transformed into a full-fledged, ever-evolving industry. Over the years, cybercriminals have honed their tactics, adapting to new technologies and devising increasingly sophisticated methods. The year 2024 witnessed a surge in cyber scams, employing a wide range of strategies to swindle people out of their hard-earned money under the guise of Digital Arrest. No one was spared, as the targets ranged from high-ranking officials and journalists to security personnel and innocent elderly individuals. From basic online scams to large-scale operations reminiscent of ‘Jamtara,’ and with the emergence of high-profile digital arrests, cybercrime is no longer a distant threat – it has become a pervasive reality. Digital Arrest is an elaborate scam designed to extort victims of their savings through intimidation, deceit and blackmail. Fraudsters often pose as law enforcement officials, using fear as their primary weapon. The larger the amount they aim to steal, the more sophisticated their operation becomes. Surprisingly, it all begins with a seemingly innocent phone call. Many of us, regardless of our backgrounds, have encountered such calls. They might start with a casual claim like a parcel booked in your name being sent to Taiwan, threats of your phone number being blocked due to unpaid bills, or requests for KYC verification. Others may offer tempting work-from-home opportunities. However, if you continue engaging, these calls often take a sinister turn, luring victims into traps that could lead to significant financial loss. Common Modus-Operandi used by scamsters India’s Fight against Cyber Crime and Digital Arrest The Central Government has strengthened its efforts to combat cybercrimes through a series of coordinated initiatives. Key measures include: Through these efforts, the government is building a robust framework to prevent and address cybercrimes, fostering a safer digital environment for all. Our contribution: Fight against Digital Arrest The government, police, and various agencies play a crucial role in combating cybercrime, but the greater responsibility lies with us, the citizens of India. To protect ourselves and our communities, we must prioritize education and awareness, especially among the most vulnerable – the young and elderly and the rural population, who are at higher risk of falling prey to digital arrest scams. Awareness is our strongest defence. By openly discussing how these scams operate and what actions to take if targeted, we can collectively strengthen our resistance against such cyber frauds. Cyber scams and digital arrest frauds can affect anyone, from students to professionals and social media influencers, with no one immune to these threats. Instead of blaming victims, we must foster a supportive environment where they feel safe to share their experiences without fear of judgment or reputational harm. The rise of digital arrest scams in India is largely driven by society’s tendency to shame victims, who, even when innocent, face doubt, blame, and social stigma, which discourages them from reporting the crime. This silence enables scammers to thrive, as many victims, fearing the damage to their social standing, choose to stay silent, allowing cyber fraud to grow unchecked. It’s time to change this narrative. Support, not shame, is the way forward in fighting digital fraud. Let’s encourage open discussions, break the silence, and empower victims to come forward. Awareness, education, and a united effort from both authorities and citizens are key to combating cyber fraud and protecting individuals from becoming victims and together, they can turn the tide against digital fraud – empowering victims, exposing scammers, and building a safer digital world for all.

Read More