Catching Inside Attackers: Balancing Forensic Detectability and Privacy of Employees - Inria - Institut national de recherche en sciences et technologies du numérique Accéder directement au contenu
Communication Dans Un Congrès Année : 2016

Catching Inside Attackers: Balancing Forensic Detectability and Privacy of Employees

Ephraim Zimmer
  • Fonction : Auteur
  • PersonId : 999322
Jens Lindemann
  • Fonction : Auteur
  • PersonId : 999323
Dominik Herrmann
  • Fonction : Auteur
  • PersonId : 999324
Hannes Federrath
  • Fonction : Auteur
  • PersonId : 999325

Résumé

IT departments of organisations go to great lengths to protect their IT infrastructure from external attackers. However, internal attacks also pose a large threat to organisations. Despite detection and prevention of insider attacks being an active field of research, so far such techniques are rarely being deployed in practice. This paper outlines the state of the art in the field and identifies open research problems in the area. The lack of unified definitions and publicly available datasets for evaluation is detrimental to the comparability of published results in the field and hinders the continual improvement of technology. Another important problem is that of data protection: On the one hand, the data captured for insider attack detection could also be used for surveillance of employees, so it should be anonymised. On the other hand, anonymisation may make some attacks undetectable, leading to a trade-off between detectability of attacks and privacy.
Fichier principal
Vignette du fichier
416270_1_En_4_Chapter.pdf (155.54 Ko) Télécharger le fichier
Origine : Fichiers produits par l'(les) auteur(s)
Loading...

Dates et versions

hal-01445792 , version 1 (25-01-2017)

Licence

Paternité

Identifiants

Citer

Ephraim Zimmer, Jens Lindemann, Dominik Herrmann, Hannes Federrath. Catching Inside Attackers: Balancing Forensic Detectability and Privacy of Employees. International Workshop on Open Problems in Network Security (iNetSec), Oct 2015, Zurich, Switzerland. pp.43-55, ⟨10.1007/978-3-319-39028-4_4⟩. ⟨hal-01445792⟩
50 Consultations
93 Téléchargements

Altmetric

Partager

Gmail Facebook X LinkedIn More