English
Related papers

Related papers: RCVaR: an Economic Approach to Estimate Cyberattac…

200 papers

Cyberattacks pose a significant business risk to organizations. Although there is ample literature focusing on why people pose a major risk to organizational cybersecurity and how to deal with it, there is surprisingly little we know about…

Cryptography and Security · Computer Science 2024-10-22 Simon Vrhovec , Blaž Markelj

In this work we start walking the path to a new perspective for viewing cyberwarfare scenarios, by introducing conceptual tools (a formal model) to evaluate the costs of an attack, to describe the theater of operations, targets, missions,…

Cryptography and Security · Computer Science 2010-06-11 Ariel Futoransky , Luciano Notarfrancesco , Gerardo Richarte , Carlos Sarraute

Determining contributions by sub-portfolios or single exposures to portfolio-wide economic capital for credit risk is an important risk measurement task. Often economic capital is measured as Value-at-Risk (VaR) of the portfolio loss…

Statistics Theory · Mathematics 2009-06-18 Dirk Tasche

There is no standard yet for measuring and controlling the costs associated with implementing cybersecurity programs. To advance research and practice towards this end, we develop a mapping using the well-known concept of quality costs and…

Cryptography and Security · Computer Science 2017-07-11 Nicole M. Radziwill , Morgan C. Benton

The lack of high-quality public cyber incident data limits empirical research and predictive modeling for cyber risk assessment. This challenge persists due to the reluctance of companies to disclose incidents that could damage their…

Risk Management · Quantitative Finance 2026-03-20 Jiayi Guo , Zhiyu Quan , Linfeng Zhang

In cybersecurity, vulnerability assessment has typically focused on identifying and measuring vulnerabilities within digital assets and technical infrastructures. However, there is growing recognition that this approach alone is inadequate…

What if the main data protection vulnerability is risk management? Data Protection merges three disciplines: data protection law, information security, and risk management. Nonetheless, very little research has been made on the field of…

Risk Management · Quantitative Finance 2025-02-18 Luis Enriquez

In this study an exploration of insurance risk transfer is undertaken for the cyber insurance industry in the United States of America, based on the leading industry dataset of cyber events provided by Advisen. We seek to address two core…

Risk Management · Quantitative Finance 2022-03-16 Matteo Malavasi , Gareth W. Peters , Pavel V. Shevchenko , Stefan Trück , Jiwook Jang , Georgy Sofronov

In many sequential decision-making problems we may want to manage risk by minimizing some measure of variability in costs in addition to minimizing a standard criterion. Conditional value-at-risk (CVaR) is a relatively new risk measure that…

Artificial Intelligence · Computer Science 2014-07-14 Yinlam Chow , Mohammad Ghavamzadeh

In the dynamic cyber threat landscape, effective decision-making under uncertainty is crucial for maintaining robust information security. This paper introduces the Cyber Resilience Index (CRI), a threat-informed probabilistic approach to…

Cryptography and Security · Computer Science 2024-09-09 Lampis Alevizos , Vinh-Thong Ta

Cyber insurance is a key component in risk management, intended to transfer risks and support business recovery in the event of a cyber incident. As cyber insurance is still a new concept in practice and research, there are many unanswered…

Cryptography and Security · Computer Science 2021-06-22 Jason R. C. Nurse , Louise Axon , Arnau Erola , Ioannis Agrafiotis , Michael Goldsmith , Sadie Creese

Cyber attacks on the healthcare industry can have tremendous consequences and the attack surface expands continuously. In order to handle the steadily rising workload, an expanding amount of analog processes in healthcare institutions is…

Cryptography and Security · Computer Science 2024-09-20 Patrizia Heinl , Andrius Patapovas , Michael Pilgermann

In the design of software and cyber-physical systems, security is often perceived as a qualitative need, but can only be attained quantitatively. Especially when distributed components are involved, it is hard to predict and confront all…

Cryptography and Security · Computer Science 2018-03-30 Roberto Vigo , Flemming Nielson , Hanne Riis Nielson

The UK Critical National Infrastructure is critically dependent on digital technologies that provide communications, monitoring, control, and decision-support functionalities. Digital technologies are progressively enhancing efficiency,…

Cryptography and Security · Computer Science 2022-08-18 Uchenna D Ani , Jeremy D McK Watson , Nilufer Tuptuk , Steve Hailes , Madeline Carr , Carsten Maple

Success of any IT industry depends on the success rate of their projects, which in turn depends on several factors such as cost, time, and availability of resources. These factors formulate the risk areas, which needs to be addressed in a…

Software Engineering · Computer Science 2012-10-05 Raghavi K Bhujang , Suma. V

The Internet plays a key role in society and is vital to economic development. Due to the pressure of competition, most technology companies, including Internet finance companies, continue to explore new markets and new business. Funding…

Econometrics · Economics 2020-01-28 Runjie Xu , Chuanmin Mi , Nan Ye , Tom Marshall , Yadong Xiao , Hefan Shuai

This paper develops a safety analysis method for stochastic systems that is sensitive to the possibility and severity of rare harmful outcomes. We define risk-sensitive safe sets as sub-level sets of the solution to a non-standard optimal…

Systems and Control · Electrical Eng. & Systems 2022-06-28 Margaret P. Chapman , Riccardo Bonalli , Kevin M. Smith , Insoon Yang , Marco Pavone , Claire J. Tomlin

The economics of an internet crime has newly developed into a field of controlling black money. This economic approach not only provides estimated technique of analyzing internet crimes but also gives details to analyzers of system…

Computers and Society · Computer Science 2014-01-22 Umer Asgher , Fahad Moazzam Dar , Ali Hamza , Abdul Moeed Paracha

The escalating frequency and sophistication of cyber threats increased the need for their comprehensive understanding. This paper explores the intersection of geopolitical dynamics, cyber threat intelligence analysis, and advanced detection…

Cryptography and Security · Computer Science 2025-09-29 Gustavo Sánchez , Ghada Elbez , Veit Hagenmeyer

While recognized as a theoretical and practical concept for over 20 years, only now ransomware has taken centerstage as one of the most prevalent cybercrimes. Various reports demonstrate the enormous burden placed on companies, which have…

Cryptography and Security · Computer Science 2017-08-23 Aron Laszka , Sadegh Farhang , Jens Grossklags