中文
相关论文

相关论文: Combining Technical and Financial Impacts for Coun…

200 篇论文

The losses arising from a system being hit by cyber attacks can be staggeringly high, but defending against such attacks can also be costly. This work proposes an attack countermeasure selection approach based on cost impact analysis that…

密码学与安全 · 计算机科学 2019-04-08 Jukka Soikkeli , Luis Muñoz-González , Emil C. Lupu

Risk is unavoidable in business and risk management is needed amongst others to set up good security policies. Once the risks are evaluated, the next step is to decide how they should be treated. This involves managers making decisions on…

其他计算机科学 · 计算机科学 2013-03-08 Le Minh Sang Tran , Bjørnar Solhaug , Ketil Stølen

This paper attempts to strengthen the pursued research on social engineering (SE) threat identification, and control, by means of the author's illustrated classification, which includes attack types, determining the degree of possible harm…

密码学与安全 · 计算机科学 2019-02-25 V. Y. Sokolov , O. Y. Korzhenko

When investing in cyber security resources, information security managers have to follow effective decision-making strategies. We refer to this as the cyber security investment challenge. In this paper, we consider three possible…

计算机科学与博弈论 · 计算机科学 2015-02-20 Andrew Fielder , Emmanouil Panaousis , Pasquale Malacaria , Chris Hankin , Fabrizio Smeraldi

Selecting the combination of security controls that will most effectively protect a system's assets is a difficult task. If the wrong controls are selected, the system may be left vulnerable to cyber-attacks that can impact the…

密码学与安全 · 计算机科学 2024-10-31 Dylan Léveillé , Jason Jaskolka

Despite numerous countermeasures proposed by practitioners and researchers, remote control-flow alteration of programs with memory-safety vulnerabilities continues to be a realistic threat. Guaranteeing that complex software is completely…

密码学与安全 · 计算机科学 2017-02-20 Martín Ochoa , Sebastian Banescu , Cynthia Disenfeld , Gilles Barthe , Vijay Ganesh

Metrics and frameworks to quantifiably assess security measures have arisen from needs of three distinct research communities - statistical measures from the intrusion detection and prevention literature, evaluation of cyber exercises,…

密码学与安全 · 计算机科学 2019-10-28 Michael D. Iannacone , Robert A. Bridges

The success of a security attack crucially depends on time: the more time available to the attacker, the higher the probability of a successful attack. Formalisms such as Reliability block diagrams, Reliability graphs and Attack…

密码学与安全 · 计算机科学 2015-10-02 Rajesh Kumar , Dennis Guck , Marielle Stoelinga

Network connectivity exposes the network infrastructure and assets to vulnerabilities that attackers can exploit. Protecting network assets against attacks requires the application of security countermeasures. Nevertheless, employing…

计算机科学与博弈论 · 计算机科学 2023-03-16 Arash Bozorgchenani , Charilaos C. Zarakovitis , Su Fong Chien , Qiang Ni , Antonios Gouglidis , Wissam Mallouli , Heng Siong Lim

With the increasing number of internet-based resources and applications, the amount of attacks faced by companies has increased significantly in the past years. Likewise, the techniques to test security and emulate attacks need to be…

Recommender systems have become an integral part of online services to help users locate specific information in a sea of data. However, existing studies show that some recommender systems are vulnerable to poisoning attacks, particularly…

Cyber threats affect all kinds of organisations. Risk analysis is an essential methodology for cybersecurity as it allows organisations to deal with the cyber threats potentially affecting them, prioritise the defence of their assets and…

Today business environment is highly dependent on complex technologies, and information is considered an important asset. Organizations are therefore required to protect their information infrastructure and follow an inclusive risk…

计算机与社会 · 计算机科学 2015-12-15 Pankaj Pandey

Modern industrial systems face a growing threat from sophisticated cyberattacks that can cause significant operational disruptions. This work presents a novel methodology for identification of the most critical cyberattacks that may disrupt…

系统与控制 · 电气工程与系统科学 2024-05-31 Bruno Paes Leao , Jagannadh Vempati , Siddharth Bhela , Tobias Ahlgrim , Daniel Arnold

An attack taxonomy offers a consistent and structured classification scheme to systematically understand, identify, and classify cybersecurity threat attributes. However, existing taxonomies only focus on a narrow range of attacks and…

密码学与安全 · 计算机科学 2026-04-03 Md Habibor Rahman , Rocco Cassandro , Thorsten Wuest , Mohammed Shafae

Our decision-making processes are becoming more data driven, based on data from multiple sources, of different types, processed by a variety of technologies. As technology becomes more relevant for decision processes, the more likely they…

计算机与社会 · 计算机科学 2018-01-01 Tomasz Ostwald

The article presents a study using attacks such as a fake access point and a phishing page. The previous publications on social engineering have been reviewed, statistics of break-ups are analyzed and directions and mechanism of realization…

密码学与安全 · 计算机科学 2019-04-04 Volodymyr Yu. Sokolov , Davyd M. Kurbanmuradov

Decision making in the face of a disaster requires the consideration of several complex factors. In such cases, Bayesian multi-criteria decision analysis provides a framework for decision making. In this paper, we present how to construct a…

应用统计 · 统计学 2021-12-21 Peter Strong , Aditi Shenvi , Xuewen Yu , K. Nadia Papamichail , Henry P Wynn , Jim Q Smith

The cybersecurity technological landscape is a complex ecosystem in which entities -- such as companies and technologies -- influence each other in a non-trivial manner. Measuring the influence between entities is a tenet for informed…

密码学与安全 · 计算机科学 2021-12-13 Anita Mezzetti , Dimitri Percia David , Thomas Maillart , Michael Tsesmelis , Alain Mermoud

When undertaking cyber security risk assessments, we must assign numeric values to metrics to compute the final expected loss that represents the risk that an organization is exposed to due to cyber threats. Even if risk assessment is…

计算机科学与博弈论 · 计算机科学 2017-12-19 Andrew Fielder , Sandra Konig , Emmanouil Panaousis , Stefan Schauer , Stefan Rass
‹ 上一页 1 2 3 10 下一页 ›