Skip to Main content Skip to Navigation
Conference papers

Data Leakage Quantification

Abstract : The detection and handling of data leakages is becoming a critical issue for organizations. To this end, data leakage solutions are usually employed by organizations to monitor network traffic and the use of portable storage devices. These solutions often produce a large number of alerts, whose analysis is time-consuming and costly for organizations. To effectively handle leakage incidents, organizations should be able to focus on the most severe incidents. Therefore, alerts need to be prioritized with respect to their severity. This work presents a novel approach for the quantification of data leakages based on their severity. The approach quantifies leakages with respect to the amount and sensitivity of the leaked information as well as the ability to identify the data subjects of the leaked information. To specify and reason on data sensitivity in an application domain, we propose a data model representing the knowledge in the domain. We validate our approach by analyzing data leakages within a healthcare environment.
Document type :
Conference papers
Complete list of metadata

Cited literature [18 references]  Display  Hide  Download

https://hal.inria.fr/hal-01284845
Contributor : Hal Ifip <>
Submitted on : Tuesday, March 8, 2016 - 11:04:01 AM
Last modification on : Monday, May 9, 2016 - 5:58:44 PM
Long-term archiving on: : Sunday, November 13, 2016 - 9:53:11 AM

File

978-3-662-43936-4_7_Chapter.pd...
Files produced by the author(s)

Licence


Distributed under a Creative Commons Attribution 4.0 International License

Identifiers

Citation

Sokratis Vavilis, Milan Petković, Nicola Zannone. Data Leakage Quantification. 28th IFIP Annual Conference on Data and Applications Security and Privacy (DBSec), Jul 2014, Vienna, Austria. pp.98-113, ⟨10.1007/978-3-662-43936-4_7⟩. ⟨hal-01284845⟩

Share

Metrics

Record views

116

Files downloads

189