中文
相关论文

相关论文: Simulating Cyber-Attacks for Fun and Profit

200 篇论文

In today digital landscape, organizations face constantly evolving cyber threats, making it essential to discover slippery attack vectors through novel techniques like Security Chaos Engineering (SCE), which allows teams to test defenses…

With the ever growing networking capabilities and services offered to users, attack surfaces have been increasing exponentially, additionally, the intricacy of network architectures has increased the complexity of cyber-defenses, to this…

Rapid industrial digitalization has created intricate cybersecurity demands that necessitate effective validation methods. While cyber ranges and simulation platforms are widely deployed, they frequently face limitations in scenario…

密码学与安全 · 计算机科学 2025-02-20 Jiaqi Li , Xizhong Guo , Yang Zhao , Lvyang Zhang , Lidong Zhai

There is a growing need for cybersecurity professionals with practical knowledge and experience to meet societal needs and comply with new standards and regulations. At the same time, the advances in software technology and artificial…

密码学与安全 · 计算机科学 2026-04-02 Charilaos Skandylas , Mikael Asplund

Cyber attacks are ubiquitous and a constantly growing threat in the age of digitization. In order to protect important data, developers and system administrators must be trained and made aware of possible threats. Practical training can be…

密码学与安全 · 计算机科学 2024-07-24 Andreas Eipper , Daniela Pöhn

Adversary emulation tools facilitate scripting and automated execution of cyber attack chains, thereby reducing costs and manual expert effort required for security testing, cyber exercises, and intrusion detection research. However, due to…

密码学与安全 · 计算机科学 2026-01-21 Max Landauer , Wolfgang Hotwagner , Thorina Boenke , Florian Skopik , Markus Wurzenberger

The ever increasing number of cyber attacks requires the cyber security and forensic specialists to detect, analyze and defend against the cyber threats in almost realtime. In practice, timely dealing with such a large number of attacks is…

密码学与安全 · 计算机科学 2018-08-06 Mauro Conti , Ali Dehghantanha , Tooska Dargahi

This innovative practice WIP paper describes \emph{LITE-SOC}, a lightweight web-based Security Operations Center (SOC) simulator designed for instructor-led cybersecurity education. SOC analysts must triage large volumes of alerts, separate…

密码学与安全 · 计算机科学 2026-05-19 Martin Higgins , Shawn Thompson , Cherry Mangla

Industrial Control Systems (ICSs) rely on insecure protocols and devices to monitor and operate critical infrastructure. Prior work has demonstrated that powerful attackers with detailed system knowledge can manipulate exchanged sensor data…

密码学与安全 · 计算机科学 2022-04-21 Herson Esquivel-Vargas , John Henry Castellanos , Marco Caselli , Nils Ole Tippenhauer , Andreas Peter

Threat emulators are tools or sets of scripts that emulate cyber attacks or malicious behavior. They can be used to create and launch single procedure attacks and multi-step attacks; the resulting attacks may be known or unknown cyber…

密码学与安全 · 计算机科学 2020-10-05 Polina Zilberman , Rami Puzis , Sunders Bruskin , Shai Shwarz , Yuval Elovici

Today, there is a plethora of software security tools employing visualizations that enable the creation of useful and effective interactive security analyst dashboards. Such dashboards can assist the analyst to understand the data at hand…

人机交互 · 计算机科学 2020-10-16 Georgios Bakirtzis , Brandon J. Simon , Cody H. Fleming , Carl R. Elks

This paper introduced the JiuTian Intelligent Network Simulation Platform, which can provide wireless communication simulation data services for the Open Innovation Platform. The platform contains a series of scalable simulator…

网络与互联网体系结构 · 计算机科学 2023-10-12 Lei Zhao , Miaomiao Zhang , Guangyu Li , Zhuowen Guan , Sijia Liu , Zhaobin Xiao , Yuting Cao , Zhe Lv , Yanping Liang

A vision-based keystroke inference attack is a side-channel attack in which an attacker uses an optical device to record users on their mobile devices and infer their keystrokes. The threat space for these attacks has been studied in the…

计算机视觉与模式识别 · 计算机科学 2020-09-15 John Lim , True Price , Fabian Monrose , Jan-Michael Frahm

The ability to analyze network threats is very important in security research. Traditional approaches, involving sandboxing technology are limited to simulating a single host, missing local network attacks. This issue is addressed by…

密码学与安全 · 计算机科学 2020-07-17 Francisc Moldovan , Ciprian Oprisa

Many terminals are used in safety-critical operations in which humans, through terminal user interfaces, become a part of the system control loop (e.g., medical and industrial systems). These terminals are typically embedded, single-purpose…

密码学与安全 · 计算机科学 2016-04-19 Luka Malisa , Kari Kostiainen , Thomas Knell , David Sommer , Srdjan Capkun

Cybersecurity training should be adaptable to evolving the cyber threat landscape, cost effective and integrated well with other enterprise management components. Unfortunately, very few cybersecurity training platforms can satisfy such…

密码学与安全 · 计算机科学 2018-12-12 Tam n. Nguyen , Lydia Sbityakov , Samantha Scoggins

In this research article, we explore the use of a design process for adapting existing cyber risk assessment standards to allow the calculation of economic impact from IoT cyber risk. The paper presents a new model that includes a design…

We propose a novel framework for modelling attack scenarios in cyber-physical control systems: we represent a cyber-physical system as a constrained switching system, where a single model embeds the dynamics of the physical process, the…

系统与控制 · 电气工程与系统科学 2023-01-02 Eleftherios Vlahakis , Gregory Provan , Gordon Werner , Shanchieh Yang , Nikolaos Athanasopoulos

Increased automation has created an impetus to integrate infrastructure with wide-spread connectivity in order to improve efficiency, sustainability, autonomy, and security. Nonetheless, this reliance on connectivity and the inevitability…

系统与控制 · 电气工程与系统科学 2023-11-17 Tanushree Roy , Satadru Dey

Cybersecurity incident response teams mitigate the impact of adverse cyber-related events in organisations. Field studies of IR teams suggest that at present the process of IR is under-developed with a focus on the technological dimension…

密码学与安全 · 计算机科学 2021-08-12 Ashley O'Neill , Atif Ahmad , Sean Maynard