Soft estimates of user protection from social engineering attacks: Fuzzy combination of user vulnerabilities and malefactor competencies in the attacking impact success prediction

Результат исследований: Публикации в книгах, отчётах, сборниках, трудах конференцийстатья в сборнике материалов конференциинаучнаярецензирование

Аннотация

The material is devoted to solving an individual task of the research aimed at automating the construction of estimates of protection of users and, indirectly, critical documents from social engineering attacks. This issue is closely related to soft social computing. Also the estimates of protection of users are the basis of building a expert system, which can substitute for a social engineering specialist. The material describes the models of the following: the malefactor, the user, the relationships between them, the critical document, the information system, all of which represent the basic entities necessary for simulating social engineering attacks and building appropriate attack trees. Here we propose an approach to estimating the probability of a successful social engineering attacking impact by a malefactor on the user, based on the use of triangular norms. The conclusion is reached that in conditions of a lack of information for soft estimates at this stage, t-norms may be applicable, since, firstly, they provide the expected properties of a combination of the malefactor’s competency and user vulnerability models, secondly, they are not computationally difficult and, thirdly, in a number of cases allow for an understandable interpretation within the proposed area.

Язык оригиналаанглийский
Название основной публикацииArtificial Intelligence and Natural Language - 8th Conference, AINL 2019, Proceedings
РедакторыDmitry Ustalov, Andrey Filchenkov, Lidia Pivovarova
ИздательSpringer Nature
Страницы47-58
Число страниц12
ISBN (печатное издание)9783030345174
DOI
СостояниеОпубликовано - 1 янв 2019
Событие8th Conference on Artificial Intelligence and Natural Language, AINL 2019 - Tartu, Эстония
Продолжительность: 20 ноя 201922 ноя 2019

Серия публикаций

НазваниеCommunications in Computer and Information Science
Том1119 CCIS
ISSN (печатное издание)1865-0929
ISSN (электронное издание)1865-0937

конференция

конференция8th Conference on Artificial Intelligence and Natural Language, AINL 2019
СтранаЭстония
ГородTartu
Период20/11/1922/11/19

Предметные области Scopus

  • Компьютерные науки (все)
  • Математика (все)

Fingerprint Подробные сведения о темах исследования «Soft estimates of user protection from social engineering attacks: Fuzzy combination of user vulnerabilities and malefactor competencies in the attacking impact success prediction». Вместе они формируют уникальный семантический отпечаток (fingerprint).

Цитировать