Skip to main navigation Skip to search Skip to main content

Towards a theory of insider threat assessment

  • SUNY Buffalo

Research output: Contribution to conferencePaperpeer-review

122 Scopus citations

Abstract

Insider attacks are a well-known problem acknowledged as a threat as early as 1980s. The threat is attributed to legitimate users who abuse their privileges, and given their familiarity and proximity to the computational environment, can easily cause significant damage or losses. Due to the lack of tools and techniques, security analysts do not correctly perceive the threat, and hence consider the attacks as unpreventable. In this paper, we present a theory of insider threat assessment. First, we describe a modeling methodology which captures several aspects of insider threat, and subsequently, show threat assessment methodologies to reveal possible attack strategies of an insider.

Original languageEnglish
Pages108-117
Number of pages10
DOIs
StatePublished - 2005
Event2005 International Conference on Dependable Systems and Networks - Yokohama, Japan
Duration: Jun 28 2005Jul 1 2005

Conference

Conference2005 International Conference on Dependable Systems and Networks
Country/TerritoryJapan
CityYokohama
Period06/28/0507/1/05

Fingerprint

Dive into the research topics of 'Towards a theory of insider threat assessment'. Together they form a unique fingerprint.

Cite this