【24h】

A Human Vulnerability Assessment Methodology

机译:人类脆弱性评估方法

获取原文

摘要

Organisations are struggling to keep pace with the threats posed to their information security by hackers and the growing sophistication of both technical and non-technical cyber-attacks. Many countermeasures have been discussed, developed and deployed, yet the human element remains the least understood and a significant weak link within the system. With this in mind, the social engineer uses a combination of tactics to exploit the vulnerabilities each individual has, to gain access to systems and sensitive information. This paper indicates that not all individuals are susceptible to the same attack, but instead that each of us is likely to succumb to a different type of tactic. Our objective is to combine personality preference and attackers' tactics to propose a vulnerability assessment methodology for the human within the system.
机译:组织正努力跟上黑客对信息安全构成的威胁,以及技术和非技术网络攻击的日趋复杂化。已经讨论,开发和部署了许多对策,但是人为因素仍然是最难理解的,并且是系统内的重要薄弱环节。考虑到这一点,社会工程师使用多种策略组合来利用每个人所具有的漏洞,以获得对系统和敏感信息的访问权。本文指出,并非所有个人都容易受到相同的攻击,但是我们每个人都有可能屈服于不同类型的策略。我们的目标是结合个性偏好和攻击者的策略,为系统内的人员提供一种脆弱性评估方法。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号