Vis enkel innførsel

dc.contributor.authorWangen, Gaute
dc.contributor.authorShalaginov, Andrii
dc.contributor.authorHallstensen, Christoffer V
dc.date.accessioned2018-02-12T11:49:32Z
dc.date.available2018-02-12T11:49:32Z
dc.date.created2016-12-05T13:48:35Z
dc.date.issued2016
dc.identifier.citationLecture Notes in Computer Science. 2016, 9866 183-202.nb_NO
dc.identifier.issn0302-9743
dc.identifier.urihttp://hdl.handle.net/11250/2484068
dc.description.abstractThis paper proposes a risk assessment process based on distinct classes and estimators, which we apply to a case study of a common communications security risk; a distributed denial of service attack (DDoS) attack. The risk assessment’s novelty lies in the combination both the quantitative (statistics) and qualitative (subjective knowledge-based) aspects to model the attack and estimate the risk. The approach centers on estimations of assets, vulnerabilities, threats, controls, and associated outcomes in the event of a DDoS, together with a statistical analysis of the risk. Our main contribution is the process to combine the qualitative and quantitative estimation methods for cyber security risks, together with an insight into which technical details and variables to consider when risk assessing the DDoS amplification attack.nb_NO
dc.language.isoengnb_NO
dc.publisherSpringer Verlagnb_NO
dc.titleCyber security risk assessment of a DDoS attacknb_NO
dc.typeJournal articlenb_NO
dc.typePeer reviewednb_NO
dc.description.versionacceptedVersionnb_NO
dc.source.pagenumber183-202nb_NO
dc.source.volume9866nb_NO
dc.source.journalLecture Notes in Computer Sciencenb_NO
dc.identifier.doi10.1007/978-3-319-45871-7_12
dc.identifier.cristin1408380
dc.description.localcodeThis is a post-peer-review, pre-copyedit version of an article published in [International Conference on Information Security]. The final authenticated version is available online at: https://link.springer.com/chapter/10.1007%2F978-3-319-45871-7_12nb_NO
cristin.unitcode194,18,21,80
cristin.unitcode194,18,24,10
cristin.unitnameNorwegian Information Security Lab
cristin.unitnameIT-seksjonen Gjøvik
cristin.ispublishedtrue
cristin.fulltextoriginal
cristin.qualitycode1


Tilhørende fil(er)

Thumbnail

Denne innførselen finnes i følgende samling(er)

Vis enkel innførsel