【24h】

Security Risk Management in Online System

机译:在线系统中的安全风险管理

获取原文

摘要

The contribution of this paper is to study online systems weaknesses and their relationships to relative cyber-attacks such as data breach against SWIFT network in online banking to ensure the effectiveness of the risk management process. The relationships developed in this study are identified by highlighting the latest incidents globally in online banking and discovering new approaches that the attacker can use against common vulnerabilities such as mobile malware and code injection in banking channels causing massive loss of bank's assets values. Additionally, this research analyzes Online Banking security practices that can be a backdoor for serious incidents and highlights risk management process. The goal is to provide a review of major risks including security risks, compliance risk and operational risk that have been developed in online banking. Also, the study reviews threat methodologies that attacker has been followed in recent years. As a result, the research shows that most dangerous attacks came particularly from one vulnerability that was disregard and handled without appropriate strategies; and provides guidance on risk monitoring and assessment in Online systems.
机译:本文的目的是研究在线系统的弱点及其与相关网络攻击的关系,例如在线银行中针对SWIFT网络的数据泄露,以确保风险管理流程的有效性。通过重点介绍全球网上银行的最新事件并发现攻击者可以用来针对常见漏洞(例如移动恶意软件和银行渠道中的代码注入)造成银行资产价值大量损失的新方法,来确定本研究中建立的关系。此外,本研究分析了可能是严重事件后门的在线银行安全实践,并重点介绍了风险管理过程。目的是对在线银行中已开发出的主要风险进行审查,包括安全风险,合规风险和操作风险。此外,该研究还回顾了攻击者近年来一直遵循的威胁方法。结果,研究表明,最危险的攻击尤其来自一个漏洞,该漏洞在没有适当策略的情况下被忽略和处理。并提供有关在线系统中的风险监控和评估的指南。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号