Skip to main navigation Skip to search Skip to main content

The cyber enemy within ... Countering the threat from malicious insiders

  • Advanced Research and Development Activity
  • Stottler Henke Associates
  • Orincon Information Assurance

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

4 Scopus citations

Abstract

The measures to be taken to counter threats from malicious insiders who may use their computer privileges to modify, remove, or prevent access to an organization's data are discussed. The information security community needs to consider new means of evaluating behaviours over months or even years, and for incorporating non-traditional evidence. Detection and a tamper-resistant logging and track-back mechanism must be in place so that essential details about the attack and the feedback to refine the security policies can be collected should an attack succeed. The use of automated technology to gather network insider information, modeling of users and networks, and advanced reasoning techniques to identify sophisticated attacks should be researched.

Original languageEnglish
Title of host publicationProceedings - 20th Annual Computer Security Applications Conference, ACSAC 2004
Pages346-347
Number of pages2
DOIs
StatePublished - 2004
Event20th Annual Computer Security Applications Conference, ACSAC 2004 - Tucson, AZ, United States
Duration: Dec 6 2004Dec 10 2004

Publication series

NameProceedings - Annual Computer Security Applications Conference, ACSAC
ISSN (Print)1063-9527

Conference

Conference20th Annual Computer Security Applications Conference, ACSAC 2004
Country/TerritoryUnited States
CityTucson, AZ
Period12/6/0412/10/04

Fingerprint

Dive into the research topics of 'The cyber enemy within ... Countering the threat from malicious insiders'. Together they form a unique fingerprint.

Cite this