Fostering the Culture of Cyber Security

A. Ronchi
{"title":"Fostering the Culture of Cyber Security","authors":"A. Ronchi","doi":"10.23919/ISTAFRICA.2019.8764870","DOIUrl":null,"url":null,"abstract":"As a side effect of globalisation and massive cyber services the number of crimes both perpetrated at local and global level is growing up. Governments and Law Enforcement Agencies are aware of this and look for potential countermeasures not only following traditional solutions. Technological countermeasures are not enough there is a need to foster the Culture of Cyber Security. The present paper introduces an innovative Cyber Range to be integrated in the foreseen European Cyber Range Network. The proposed solution provides tools to test the resilience of networks and systems by exposing them to realistic nation-state cyber threats in a secure facility with the latest tools, techniques and malware, this facilitate the testing of critical technologies with enhanced agility, flexibility and scalability, it helps to strengthen the stability, security and performance of cyberinfrastructures and IT systems used by government and private organisations. The document describes a platform devoted to easily create virtual environments devoted to cyberwarfare training and cybertechnology development. The solution is in line with typical simulator’s features will be fed by real case study and will create a knowledge base of cyber treats and related extended effects and mitigation/counteractions. A specific features is the identification of the zero-day vulnerabilities in order to reduce or eliminate the Window of Vulnerability (WoV) and identify main attack vectors.Main outcomes are: improved situational awareness of cyber warfare scenarios, rapid identification of zero-day vulnerabilities, environment for the development of countermeasures, training environment for practitioners.","PeriodicalId":420572,"journal":{"name":"2019 IST-Africa Week Conference (IST-Africa)","volume":"1041 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2019-05-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2019 IST-Africa Week Conference (IST-Africa)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.23919/ISTAFRICA.2019.8764870","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0

Abstract

As a side effect of globalisation and massive cyber services the number of crimes both perpetrated at local and global level is growing up. Governments and Law Enforcement Agencies are aware of this and look for potential countermeasures not only following traditional solutions. Technological countermeasures are not enough there is a need to foster the Culture of Cyber Security. The present paper introduces an innovative Cyber Range to be integrated in the foreseen European Cyber Range Network. The proposed solution provides tools to test the resilience of networks and systems by exposing them to realistic nation-state cyber threats in a secure facility with the latest tools, techniques and malware, this facilitate the testing of critical technologies with enhanced agility, flexibility and scalability, it helps to strengthen the stability, security and performance of cyberinfrastructures and IT systems used by government and private organisations. The document describes a platform devoted to easily create virtual environments devoted to cyberwarfare training and cybertechnology development. The solution is in line with typical simulator’s features will be fed by real case study and will create a knowledge base of cyber treats and related extended effects and mitigation/counteractions. A specific features is the identification of the zero-day vulnerabilities in order to reduce or eliminate the Window of Vulnerability (WoV) and identify main attack vectors.Main outcomes are: improved situational awareness of cyber warfare scenarios, rapid identification of zero-day vulnerabilities, environment for the development of countermeasures, training environment for practitioners.
培育网络安全文化
作为全球化和大规模网络服务的副作用,地方和全球层面的犯罪数量正在增长。政府和执法机构意识到了这一点,并寻找潜在的对策,而不仅仅是遵循传统的解决方案。光靠技术措施是不够的,还需要培育网络安全文化。本文介绍了一种创新的网络靶场,将被集成到可预见的欧洲网络靶场网络中。拟议的解决方案提供了测试网络和系统弹性的工具,通过使用最新的工具,技术和恶意软件,将它们暴露在安全设施中现实的民族国家网络威胁中,这有助于测试具有增强敏捷性,灵活性和可扩展性的关键技术,它有助于加强政府和私人组织使用的网络基础设施和it系统的稳定性,安全性和性能。该文件描述了一个致力于轻松创建致力于网络战训练和网络技术开发的虚拟环境的平台。该解决方案符合典型模拟器的功能,将通过真实案例研究提供支持,并将创建一个关于网络攻击及其相关扩展影响和缓解/对策的知识库。一个特定的功能是识别零日漏洞,以减少或消除漏洞窗口(WoV)并识别主要攻击向量。主要成果包括:提高对网络战场景的态势感知、快速识别零日漏洞、制定对策的环境、从业人员的培训环境。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:604180095
Book学术官方微信