Design and Analysis of Cybersecurity Information Sharing Mechanism Between Computer Security Incident Response Teams (CSIRT) in Indonesia on Blockchain Technology Through Hyperledger Composer and Interplanetary File System (IPFS)
DOI:
https://doi.org/10.57152/malcom.v4i4.1466Keywords:
Blockchain, CSIRT, Hyperledger Composer, Information Security, Information SharingAbstract
Sharing cybersecurity information among the Computer Security Incident Response Team (CSIRT) is a crucial step in enhancing organizational cybersecurity. However, a primary challenge faced is the lack of trust among users regarding the confidentiality, integrity, and availability of shared information. This study proposes a new approach by designing a mechanism for sharing cybersecurity information among CSIRTs in Indonesia on blockchain technology using Hyperledger Composer. This approach offers an innovative solution by leveraging the advantages of blockchain technology. Through this approach, cybersecurity information can be shared in a decentralized manner, overcoming the weaknesses of centralized systems, and enhancing overall information security. Another advantage of blockchain technology is its high performance and scalability, enabling increased speed, and user capacity in the process of sharing information. By implementing a blockchain-based mechanism for sharing cybersecurity information, this research aims to ensure crucial aspects of information security, namely confidentiality, integrity, and availability. The contribution of this study is not only in enhancing organizational cybersecurity but also in providing an innovative solution to practical challenges in sharing cybersecurity information among CSIRTs.
References
Chatterjee, R. S. and K. (2020). Blockchain for Cybersecurity Incident Data Sharing. J Cybersecur, 12, 45–67.
Badan Siber dan Sandi Negara. (2023). Keamanan Siber Indonesia 2022. https://www.bssn.go.id/
P. Sharma, N. Kumar, and J. H. P. (2022). Blockchain-based Decentralized Framework for Security and Privacy Management in IoT. Journal of Network and Computer Applications, 126, 102–115.
Q. Liu, P. Li, C. Liu, and H. J. (2022). Enhancing Data Privacy and Security in Cloud Computing Using Blockchain. Future Generation Computer Systems, 107, 102–115.
Wang, S., Zhang, Y., & Zhang, Y. (2018). A blockchain-based framework for data sharing with fine-grained access control in decentralized storage systems. IEEE Access, 6, 38437–38450. https://doi.org/10.1109/ACCESS.2018.2851611
M. Conti, R. Kumar, C. Lal, and S. R. (2021). A Survey on Blockchain-Based Threat Intelligence Sharing in Cybersecurity. IEEE Communications Surveys & Tutorials, 23(1), 44–56.
Zhang, Y., Kasahara, S., Shen, Y., Jiang, X., & Wan, J. (2019). Smart contract-based access control for the Internet of Things. IEEE Internet of Things Journal, 6(2), 1594–1605. https://doi.org/10.1109/JIOT.2018.2847705
Chen, G., Xu, B., Lu, M., & Chen, N.-S. (2018). Exploring blockchain technology and its potential applications for education. Smart Learning Environments, 5(1). https://doi.org/10.1186/s40561-017-0050-x
Guo, Y., & Liang, C. (2016). Blockchain application and outlook in the banking industry. Financial Innovation, 2(1). https://doi.org/10.1186/s40854-016-0034-9
J. Lee, S. Kim, and H. P. (2024). Hyperledger Fabric in Manufacturing: Enhancing Security and Collaboration. Int J Prod Res, 62(4), 1342–1358.
J. Sun, J. Yan, and K. Z. Z. (2023a). Blockchain-based Secure Data Sharing for Educational Institutions. IEEE Transactions on Learning Technologies, 16(1), 25–36.
Lee, J., Magazine, M. P.-I. C. E., & 2017, U. (2017). How the blockchain revolution will reshape the consumer electronics industry. Ieeexplore.Ieee.Org. https://ieeexplore.ieee.org/abstract/document/7948864/
EU Blockchain Observatory and Forum. (2022). Blockchain Applications in the Energy Sector. 53. https://www.eublockchainforum.eu/sites/default/files/reports/EUBOF-Thematic_Report_Energy_Sector_0.pdf
X. Huang, Y. Yuan, and F. W. (2023). Blockchain Technology for IoT: Research Issues and Challenges. Future Generation Computer Systems, 92, 357–375.
Yuan, Y., & Wang, F. Y. (2016). Towards blockchain-based intelligent transportation systems. IEEE Conference on Intelligent Transportation Systems, Proceedings, ITSC, 2663–2668. https://doi.org/10.1109/ITSC.2016.7795984
Shah, V. P. and M. (2022). Blockchain for Healthcare: Enhancing Security and Privacy. Journal of Information Security and Applications, 50, 102–115.
Malik, R. A. and H. (2022). Blockchain in Telecommunications: Use Cases and Future Trends. Telecommun Syst, 73(2), 245–258.
Q. K. Nguyen. (2023). Blockchain in Education: Opportunities and Challenges. Educ Inf Technol (Dordr), 24(5), 3233–3251.
Chen, Q. Z. and H. (2023). Blockchain for Government: Challenges and Opportunities. Gov Inf Q, 40(1), 1–10.
Wu, X. L. and X. (2024). Blockchain in the Technology Sector: Benefits and Challenges. Journal of Strategic Information Systems, 33(1), 1–15.
Lin, J. W. and C. (2023). Blockchain for Retail: A Comprehensive Survey. Journal of Retailing and Consumer Services, 61, 102–113.
Zhang, S. C. and X. (2024). Blockchain for Finance: Current Trends and Future Directions. Journal of Financial Technology, 8(3), 234–245.
Singh, R. G. and A. (2023). Blockchain in Automotive Industry: Challenges and Opportunities. J Ind Inf Integr, 22, 1–10.
Yasin, H. H. and A. (2022). Blockchain in Logistics: Challenges and Future Trends. Journal of Business Logistics, 39(1), 145–158.
Gerard Sylvester. (2019). Blockchain for Agriculture: Opportunities and Challenges. Fao, 4(1), 88–100. https://www.ictworks.org/wp-content/uploads/2019/02/Blockchain-Agriculture.pdf
Phillips, G., & Kiçeci, ?. (n.d.). Blockchain in Energy Sector. https://files.cryptoindexseries.com/cis-files/sector_info/CIS Report- Energy.pdf
Zia, S. K. and T. (2024). Blockchain for Transportation: Current Trends and Future Directions. IEEE Transactions on Intelligent Transportation Systems, 25(1), 123–135.
Androulaki, E., Cachin, C., Ferris, C., Barger, A., & Christidis, K. (2022). Hyperledger Fabric: A Distributed Operating System for Permissioned Blockchains. EuroSys ’18: Proceedings of the Thirteenth EuroSys Conference, 125–147.
L. Chen, L. Xu, Z. Gao, and S. L. (2022). Exploring the Use of Hyperledger Fabric for Secure Data Sharing in Industrial IoT. IEEE Trans Industr Inform, 18(1), 487–497.
Yaqoob, I., Salah, K., Jayaraman, R., & Al-Hammadi, Y. (2022). Blockchain for healthcare data management: opportunities, challenges, and future recommendations. Neural Computing and Applications, 34(14), 11475–11490. https://doi.org/10.1007/s00521-020-05519-w
Y. Guo, C. Liang, and H. W. (2023). Blockchain Application in Cybersecurity: A Survey. Comput Secur, 102, 102489.
D. Kim, S. Lee, and T. K. (2023). Blockchain for Public Sector Data Sharing: Benefits and Challenges. Gov Inf Q, 40(1), 101589.
J. Sun, J. Yan, and K. Z. Z. (2023b). Blockchain-based Secure Data Sharing for Medical Cyber-Physical Systems. IEEE Trans Netw Sci Eng, 7(1), 234–245.
X. Wang, Y. Li, and J. Z. (2024). Enhancing Cybersecurity in the Tech Industry through Hyperledger Fabric’. Journal of Information Security and Applications, 63, 103028.
S. K. Kim, H. S. Lee, and S. Y. K. (2024). Blockchain Technology for Security and Privacy in the Internet of Things: A Survey. IEEE Internet Things J, 12, 932–944.
A. Martinez, S. Thompson, and J. R. (2023). Ensuring Data Integrity in the Energy Sector with Hyperledger Fabric. Energy Informatics, 6(1), 47–59. https://www.apacciooutlook.com/news/ensuring-data-integrity-in-the-era-of-iot-nwid-5565.html
W. Huang, X. Zhou, and L. Y. (2023). Increasing Transparency and Security in Transportation with Hyperledger Fabric. Transp Rev, 43(2), 165–182.
Q. Yuan, H. Sun, and F. W. (2024). Reducing Fraud Risk and Increasing Trust in Banking through Blockchain and Hyperledger Fabric. Financial Innovation, 10(1), 98–115.