Quantitative assessment of risk reduction with cybercrime black market monitoring

被引:12
作者
Allodi, Luca [1 ]
Shim, Woohyun [1 ]
Massacci, Fabio [1 ]
机构
[1] Univ Trento, DISI, Trento, Italy
来源
IEEE CS SECURITY AND PRIVACY WORKSHOPS (SPW 2013) | 2013年
关键词
black markets; cybercime; vulnerabilities; exploits;
D O I
10.1109/SPW.2013.16
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Cybercrime is notoriously maintained and empowered by the underground economy, manifested in black markets. In such markets, attack tools and vulnerability exploits are constantly traded. In this paper, we focus on making a quantitative assessment of the risk of attacks coming from such markets, and investigating the expected reduction in overall attacks against final users if, for example, vulnerabilities traded in the black markets were all to be promptly patched. In order to conduct the analysis, we mainly use the data on (a) vulnerabilities bundled in 90+ attack tools traded in the black markets collected by us; (b) actual records of 9 x 10(7) attacks collected from Symantec's Data Sharing Programme WINE. Our results illustrate that black market vulnerabilities are an important source of risk for the population of users; we further show that vulnerability mitigation strategies based on black markets monitoring may outperform traditional strategies based on vulnerability CVSS scores by providing up to 20% more expected reduction in attacks.
引用
收藏
页码:165 / 172
页数:8
相关论文
共 22 条
[1]  
Allodi L., 2012, P IEEE ASE CYBERSEC
[2]  
Allodi L., 2012, ACM P CCS BADGERS 12
[3]  
[Anonymous], 2007, 1 FORUM INCIDENT RES
[4]  
[Anonymous], 2012, P C COMP COMM SEC
[5]  
Baker W, 2012, 2012 DATA BREACH INV
[6]  
Bilge L., 2012, P 2012 ACM C COMP CO, P833, DOI [10.1145/2382196.2382284, DOI 10.1145/2382196.2382284]
[7]  
Bozorgi M., 2010, P SIGKDD 10 JUL
[8]  
COUNCIL FM, 1974, SEAT BELT USAGE BENE
[9]  
Dumitras Tudor, 2012, P LEET 12 LEET 12, P11
[10]   DOUBLE PAIR COMPARISON - A NEW METHOD TO DETERMINE HOW OCCUPANT CHARACTERISTICS AFFECT FATALITY RISK IN TRAFFIC CRASHES [J].
EVANS, L .
ACCIDENT ANALYSIS AND PREVENTION, 1986, 18 (03) :217-227