Global ETD Search
Search theses and dissertations gathered from participating repositories worldwide. Every result links back to the library that holds it. No account is needed.
Results
Showing 1 to 20 of 23 for “"security incidents"”.
-
Security Incidents in an Academic Setting: A Case Study.
<p>Academic institutes' networks, like commercial networks, have confidential and valuable information that attracts hackers. From 6 October 2000 to 29 March 2001, the authors collected data on possible attacks and probes against East Tennessee State University's campus network. The number of …
-
Classes of defense for computer systems
Computer security incidents often involve attackers acquiring a complex sequence of escalating capabilities and executing those capabilities across a range of different intermediary actors in order to achieve their ultimate malicious goals. However, popular media accounts of these incidents, as …
-
Towards better management of organizational cybersecurity
Cybersecurity poses a serious risk to organizations. To manage and improve organizational cybersecurity, one needs to have a technical comprehension of security threats along with an economic understanding of strategies employed by cyber attackers and defenders. In this dissertation, we take both …
-
Toward a Decision Support System for Measuring and Managing Cybersecurity Risk in Supply Chains
… confusion about the effectiveness of information security programs concerns not only how to measure, but also what to measure — an issue of equivocality. Thus, to lower uncertainty for improved decision-making, it is first essential to reduce equivocality by defining, expanding, and clarifying …
-
The cyber-physical topology language: definition and operations
As the number of security incidents and sophistication of those attacks increase, it is difficult to properly detect and diagnose malicious behavior. We conjecture that detection and diagnosis could be facilitated by an online “world view” that maintains information about the ability of a system to …
-
Quantifying and managing the risk of information security breaches participants in a supply chain
… can result in an increased risk of information security breaches. This thesis proposes a methodology for quantifying information security risk to a supply chain participant. Given a system responsible for supply chain interaction and the vulnerabilities attributed to the system, the variables …
-
Efficient system auditing for real-time systems
… to intrusion detection and forensics after security incidents. While such mechanisms would be beneficial for Real-Time Systems (RTS), existing audit frameworks are rarely designed for this domain. If audit mechanisms are not carefully integrated into real-time operating systems, they can …
-
Holistic Security Engineering for Software-Defined Vehicles
… from cyberattacks by designing and implementing security concepts in the main phases of a vehicle's lifecycle. We use SAE level 4 prototype vehicles to evaluate our proposed techniques. We start with a systematic security requirement analysis using the ISA-62443 standard series, demonstrating how …
-
Ultrasonic Data Steganography
… infiltration and exfiltration in an information security context. It is well known that sound can be used to transmit data as this can be seen in many old technologies, most notably and simply DTMF tones for phone networks. But what if the sound used to transmit signals was in in the ultrasonic …
-
A response taxonomy and cost model for advanced metering infrastructures
The smart grid is creating the potential for security vulnerabilities due to the deployment of networked devices into the traditional grid. A core component of the smart grid is its advanced metering infrastructures (AMIs), in which a utility communicates and controls smart meters at customer …
-
Implementation of digital forensics readiness in big data wireless medical networks
In recent years, both cybersecurity incidents (such as data breaches) and clinical safety incidents have increased significantly in the healthcare sector. When combined with the sensitivity of healthcare data, the vulnerability of wireless medical networks (WMNs) to cyberattacks, stringent data …
-
A framework for complying with conflicting safety and security standards within critical infrastructure organisations
Safety and security risks to critical infrastructure organisations are well known, and incidents in both fields have taken place. To help critical infrastructure organisations manage these areas, safety and security standards have been created. The standards can vary from general standards to …
-
A Critical Analysis of Information Security Awareness in Legal Services
… project that analyses end-user information security awareness within the legal services domain, with a view to designing and validating a toolkit for improving security awareness programmes in organisations of a similar size and nature. Information security teams are created to defend the …
-
Bridging the gap: Applying machine learning techniques in digital forensics
… Forensic Memory Analysis (FMA) are two key cybersecurity methods for addressing these threats. While FMA leverages digital forensic techniques to extract and analyse information from system memory to explain security incidents, VMI typically works with live systems, analysing running processes to …
-
Safe and secure autonomous vehicles
… autonomous system, it needs to be monitored for security incidents and malicious attacks. In general-purpose systems, system auditing is a crucial tool for the detection and analysis of such events. Therefore, in this work, system-level auditing is adapted to real-time systems, developing …
-
A Visualization Framework for SiLK Data exploration and Scan Detection
… information, especially for investigating security incidents or troubleshooting performance problems. However, given the gigabytes of flow crossing a typical medium sized enterprise network every day, spotting malicious activity and analyzing trends in network behavior becomes a tedious …
-
Cyber security visualization effectiveness
Security visualization utilises predefined data attributes and translates them into visual nodes to form images for the purpose of communicating critical security information to targeted audiences. It is commonly used for two reasons: exploring and reporting purposes thus, sharing insights on …
-
Heuristics for Improved Enterprise Intrusion Detection
… by the analyst, based on logs of known security incidents.</p> <p>Our techniques work by applying a combination of graph algorithms and Markovian stochastic processes to perform probabilistic analysis as to whether an alarm is a true or false positive. Using these techniques it is …
-
An evidence-based cloud incident handling framework
… and organisational users; thus, ensuring the security and privacy of data stored in the cloud is a crucial requirement in an organisation‘s business continuity and risk assessment strategies. An incident handling strategy is key to mitigating risks to the confidentiality, integrity and …
-
An experiment using factor graph for early attack detection
… and preemptive detection of attacks. We use security logs of real-incidents that occurred over a six-year period at the National Center for Supercomputing Applications (NCSA) at the University of Illinois to evaluate AttackTagger. Our data consist of attacks that led directly to the target …
Page 1 of 2