Sie befinden Sich nicht im Netzwerk der Universität Paderborn. Der Zugriff auf elektronische Ressourcen ist gegebenenfalls nur via VPN oder Shibboleth (DFN-AAI) möglich. mehr Informationen...
Ergebnis 22 von 22235

Details

Autor(en) / Beteiligte
Titel
“Talking a different Language”: Anticipating adversary attack cost for cyber risk assessment
Ist Teil von
  • Computers & security, 2021-04, Vol.103, p.102163, Article 102163
Ort / Verlag
Amsterdam: Elsevier Ltd
Erscheinungsjahr
2021
Link zum Volltext
Quelle
Elsevier ScienceDirect Journals
Beschreibungen/Notizen
  • Typical cyber security risk assessment methods focus on the system under consideration, its vulnerabilities, and the resulting impact in the event of a system compromise. Cyber security, however, increasingly requires anticipating the moves of intelligent adversaries, who make decisions based on a range of factors including the cost of their attacks. A study of current risk assessment literature and industry practice shows that consideration of this cost is a notable gap in the understanding of adversaries. The factors of cost experienced by an adversary are established in this paper as Time, Finance, and Risk, supported by a practical study undertaken with relevant security practitioners. Using these factors as a base, a framework is proposed and developed to support the probabilistic determination of cost incurred by an adversary. This framework is an important extension to existing cyber security risk assessments, and is demonstrated in the paper through the use of a case study.
Sprache
Englisch
Identifikatoren
ISSN: 0167-4048
eISSN: 1872-6208
DOI: 10.1016/j.cose.2020.102163
Titel-ID: cdi_proquest_journals_2503172417

Weiterführende Literatur

Empfehlungen zum selben Thema automatisch vorgeschlagen von bX