DOI

In this article we propose to consider the trajectories of social engineering attacks, which are the most critical from the point of view of the expected damage to the organization, and not from the point of view of the probability of success of the defeat of the user and, indirectly, critical documents to which he has access. The article proposes an approach to solving the problem
of identifying the most critical path of multiway socio-engineering attack. The most critical trajectory in this article is understood as the most probable trajectory of the attack, which will bring the greatest damage to the organization. As a further development of the research direction, we can consider models that describe in more detail the context and take into account the distribution of the probability of hitting the proportion of documents available to the user, offering
models for building integrated damage estimates associated with the affected user, various access policies and accounting for the hierarchy of documents in terms of their criticality or value.
Язык оригиналаанглийский
Название основной публикацииRecent Research in Control Engineering and Decision Making
Подзаголовок основной публикацииConference proceedings ICIT 2019
Место публикацииCham
ИздательSpringer Nature
Страницы446-456
ISBN (электронное издание)9783030120726
ISBN (печатное издание)9783030120719
DOI
СостояниеОпубликовано - 2019
СобытиеInternational Conference on Information Technologies: Information and Communication Technologies for Research and Industry (ICIT-2019) - Саратов, Российская Федерация
Продолжительность: 7 фев 20198 фев 2019
http://icit2019.sstu.ru/eng/index.html

Серия публикаций

НазваниеStudies in Systems, Decision and Control
ИздательSpringer
Том199
ISSN (печатное издание)2198-4182

конференция

конференцияInternational Conference on Information Technologies: Information and Communication Technologies for Research and Industry (ICIT-2019)
Сокращенное названиеICIT-2019
Страна/TерриторияРоссийская Федерация
ГородСаратов
Период7/02/198/02/19
Сайт в сети Internet

    Области исследований

  • multi-pass social engineering attacks, social graph of company employees, critical trajectories in social graph, social engineering attacks, users protect, information security

    Предметные области Scopus

  • Компьютерные науки (разное)
  • Теория оптимизации
  • Теория принятия решений (разное)
  • Экономика, эконометрия, и финансы (разное)
  • Системотехника
  • Автотракторная техника
  • Социальные науки (разное)

ID: 50725977