中文
相关论文

相关论文: Post-Incident Audits on Cyber Insurance Discounts

200 篇论文

AI companies and governments are increasingly concerned about frontier AI systems enabling cybercrime, yet defining meaningful capability thresholds requires knowing the scale of cybercrime today. Current estimates of global cybercrime…

计算机与社会 · 计算机科学 2026-03-24 Kamilė Lukošiūtė , John Halstead , Luca Righetti

Insider threats are one of today's most challenging cybersecurity issues that are not well addressed by commonly employed security solutions. Despite several scientific works published in this domain, we argue that the field can benefit…

密码学与安全 · 计算机科学 2019-04-16 Ivan Homoliak , Flavio Toffalini , Juan Guarnizo , Yuval Elovici , Martín Ochoa

Many cybersecurity breaches occur due to users not following good cybersecurity practices, chief among them being regulations for applying software patches to operating systems, updating applications, and maintaining strong passwords. We…

多智能体系统 · 计算机科学 2020-03-26 Nirav Ajmeri , Shubham Goyal , Munindar P. Singh

This paper studies optimal insurance design under asymmetric information in a Stackelberg framework, where a monopolistic insurer faces uncertainty about both the insured's risk attitude, captured by a risk-aversion parameter, and the…

风险管理 · 定量金融 2026-04-20 Xia Han , Bin Li

Modern cyber attacks unfold through multiple stages, requiring defenders to dynamically prioritize mitigations under uncertainty. While game-theoretic models capture attacker-defender interactions, existing approaches often rely on static…

密码学与安全 · 计算机科学 2025-08-04 Yuning Jiang , Nay Oo , Qiaoran Meng , Lu Lin , Dusit Niyato , Zehui Xiong , Hoon Wei Lim , Biplab Sikdar

In this paper, we investigate joint sensor-actuator cyber attacks in discrete event systems. We assume that attackers can attack some sensors and actuators at the same time by altering observations and control commands. Because of the…

系统与控制 · 电气工程与系统科学 2023-01-12 Shengbao Zheng , Shaolong Shu , Feng Lin

Cyber risk assessment is a fundamental activity for enhancing the protection of an organization, identifying and evaluating the exposure to cyber threats. Currently, this activity is carried out mainly manually and the identification and…

密码学与安全 · 计算机科学 2022-07-08 Marco Angelini , Silvia Bonomi , Alessandro Palma

This paper addresses the identification of insurance models with multidimensional screening where insurees have private information about their risk and risk aversion. The model includes a random damage and the possibility of several…

数理金融 · 定量金融 2016-01-18 Gaurab Aryal , Isabelle Perrigne , Quang Vuong

The assessment of cyber risk plays a crucial role for cybersecurity management, and has become a compulsory task for certain types of companies and organizations. This makes the demand for reliable cyber risk assessment tools continuously…

密码学与安全 · 计算机科学 2022-06-24 Massimo Battaglioni , Giulia Rafaiani , Franco Chiaraluce , Marco Baldi

Enterprises are constantly under attack from sophisticated adversaries. These adversaries use a variety of techniques to first gain access to the enterprise, then spread laterally inside its networks, establish persistence, and finally…

密码学与安全 · 计算机科学 2024-06-14 Sumanth Rao

We study the impact of data sharing policies on cyber insurance markets. These policies have been proposed to address the scarcity of data about cyber threats, which is essential to manage cyber risks. We propose a Cournot duopoly…

理论经济学 · 经济学 2023-08-03 Carlos Barreto , Olof Reinert , Tobias Wiesinger , Ulrik Franke

This paper proposes a game-theoretic approach to address the problem of optimal sensor placement against an adversary in uncertain networked control systems. The problem is formulated as a zero-sum game with two players, namely a malicious…

系统与控制 · 电气工程与系统科学 2023-01-13 Anh Tung Nguyen , Sribalaji C. Anand , André M. H. Teixeira

In a system of interdependent users, the security of an entity is affected not only by that user's investment in security measures, but also by the positive externality of the security decisions of (some of) the other users. The provision…

计算机科学与博弈论 · 计算机科学 2015-03-26 Parinaz Naghizadeh , Mingyan Liu

Previous studies in the perimeter defense game have largely focused on the fully observable setting where the true player states are known to all players. However, this is unrealistic for practical implementation since defenders may have to…

计算机视觉与模式识别 · 计算机科学 2022-09-27 Elijah S. Lee , Giuseppe Loianno , Dinesh Jayaraman , Vijay Kumar

Cyber-physical systems, such as self-driving cars or autonomous aircraft, must defend against attacks that target sensor hardware. Analyzing system design can help engineers understand how a compromised sensor could impact the system's…

密码学与安全 · 计算机科学 2021-06-04 Jian Xiang , Nathan Fulton , Stephen Chong

The threat of algorithmic collusion, and whether it merits regulatory intervention, remains debated, as existing evaluations of its emergence often rely on long learning horizons, assumptions about counterparty rationality in adopting…

多智能体系统 · 计算机科学 2026-03-11 Yuhong Luo , Daniel Schoepflin , Xintong Wang

Dynamic game theory is an increasingly popular tool for modeling multi-agent, e.g. human-robot, interactions. Game-theoretic models presume that each agent wishes to minimize a private cost function that depends on others' actions. These…

机器人学 · 计算机科学 2025-10-17 Cade Armstrong , Ryan Park , Xinjie Liu , Kushagra Gupta , David Fridovich-Keil

Cyber risk has become a critical financial threat in today's interconnected digital economy. This paper introduces a cyber-risk management framework for networked digital systems that combines the strategic behavior of players with…

密码学与安全 · 计算机科学 2026-01-26 Elisa Botteghi , Martino S. Centonze , Davide Pastorello , Daniele Tantari

In this paper, we consider the problem of optimal reinsurance design, when the risk is measured by a distortion risk measure and the premium is given by a distortion risk premium. First, we show how the optimal reinsurance design for the…

风险管理 · 定量金融 2014-06-12 Hirbod Assa

Cyber threats affect all kinds of organisations. Risk analysis is an essential methodology for cybersecurity as it allows organisations to deal with the cyber threats potentially affecting them, prioritise the defence of their assets and…