Određivanje ulaganja i dobiti napadača u provođenje napada ; Determining investment and gain for attackers when performing cyber attack

Saved in:
Bibliographic Details
Title: Određivanje ulaganja i dobiti napadača u provođenje napada ; Determining investment and gain for attackers when performing cyber attack
Authors: Baričević, Ivor
Contributors: Groš, Stjepan
Publisher Information: Sveučilište u Zagrebu. Fakultet elektrotehnike i računarstva.
University of Zagreb. Faculty of Electrical Engineering and Computing.
Publication Year: 2023
Collection: Croatian Digital Theses Repository (National and University Library in Zagreb)
Subject Terms: napadačev trošak, napadačeva dobit, Cyber Conflict Simulator, napadački resursi, formula za izračun troška, skripta za izračun troška, attacker's cost, attacker's earnings, attacker's resources, cost calculation formula, cost calculation script, TEHNIČKE ZNANOSTI. Računarstvo, TECHNICAL SCIENCES. Computing
Description: Unatoč kontinuiranom rastu kibernetičkog kriminala, pouzdane procjene ekonomske štete napadačke strane su rijetke. Ovaj rad se bavi problemom izračunavanja ekonomske štete i ukupne dobiti napadačke organizacije. Za simulaciju napada se koristi alat Cyber Conflict Simulator (CCS), alat specifično dizajniran za modeliranje i simuliranje kibernetičkih napada. U radu se daje pregled jedne napadačke organizacije te svih resursa koje njeni članovi troše prilikom napada. Pomoću dostupne literature je procjenjen trošak tih resursa te je model ukomponiran u napad. Za potrebe procjene troška je kreirana i Python skripta koja pokriva troškove na mjestima na kojima CCS nema sposobnost odrediti trošak. Izabran je jedan scenarij napada te se prolaskom kroz njega pokušala odrediti šteta i dobit napadačke organizacije koristeći sam CCS alat i napravljenu skriptu. ; Despite the continuous growth of cybercrime, reliable estimates of the economic damage to the attacker side are rare. This paper deals with the problem of calculating the economic damage and profit of an attacker organization. The Cyber Conflict Simulator (CCS) tool, specifically designed for modeling and simulating cyber attacks, is used to simulate attacks. The thesis provides an overview of an attacker organization and all the resources it uses during an attack. The cost of these resources was estimated using available literature, and the model was incorporated into the attack. To estimate the cost, a Python script was created that covers costs in places where the CCS is unable to determine the cost. One attack scenario was chosen and an attempt was made to determine the damage and profit of the attacker organization using the CCS tool itself and the script made.
Document Type: bachelor thesis
File Description: application/pdf
Language: Croatian
Relation: https://zir.nsk.hr/islandora/object/fer:10790; https://urn.nsk.hr/urn:nbn:hr:168:449477; https://repozitorij.unizg.hr/islandora/object/fer:10790; https://repozitorij.unizg.hr/islandora/object/fer:10790/datastream/PDF
Availability: https://zir.nsk.hr/islandora/object/fer:10790
https://urn.nsk.hr/urn:nbn:hr:168:449477
https://repozitorij.unizg.hr/islandora/object/fer:10790
https://repozitorij.unizg.hr/islandora/object/fer:10790/datastream/PDF
Rights: http://rightsstatements.org/vocab/InC/1.0/ ; info:eu-repo/semantics/closedAccess
Accession Number: edsbas.2CE77DF8
Database: BASE
FullText Text:
  Availability: 0
CustomLinks:
  – Url: https://zir.nsk.hr/islandora/object/fer:10790#
    Name: EDS - BASE (s4221598)
    Category: fullText
    Text: View record from BASE
  – Url: https://www.webofscience.com/api/gateway?GWVersion=2&SrcApp=EBSCO&SrcAuth=EBSCO&DestApp=WOS&ServiceName=TransferToWoS&DestLinkType=GeneralSearchSummary&Func=Links&author=Bari%C4%8Devi%C4%87%20I
    Name: ISI
    Category: fullText
    Text: Nájsť tento článok vo Web of Science
    Icon: https://imagesrvr.epnet.com/ls/20docs.gif
    MouseOverText: Nájsť tento článok vo Web of Science
Header DbId: edsbas
DbLabel: BASE
An: edsbas.2CE77DF8
RelevancyScore: 791
AccessLevel: 3
PubType: Dissertation/ Thesis
PubTypeId: dissertation
PreciseRelevancyScore: 790.92919921875
IllustrationInfo
Items – Name: Title
  Label: Title
  Group: Ti
  Data: Određivanje ulaganja i dobiti napadača u provođenje napada ; Determining investment and gain for attackers when performing cyber attack
– Name: Author
  Label: Authors
  Group: Au
  Data: <searchLink fieldCode="AR" term="%22Baričević%2C+Ivor%22">Baričević, Ivor</searchLink>
– Name: Author
  Label: Contributors
  Group: Au
  Data: Groš, Stjepan
– Name: Publisher
  Label: Publisher Information
  Group: PubInfo
  Data: Sveučilište u Zagrebu. Fakultet elektrotehnike i računarstva.<br />University of Zagreb. Faculty of Electrical Engineering and Computing.
– Name: DatePubCY
  Label: Publication Year
  Group: Date
  Data: 2023
– Name: Subset
  Label: Collection
  Group: HoldingsInfo
  Data: Croatian Digital Theses Repository (National and University Library in Zagreb)
– Name: Subject
  Label: Subject Terms
  Group: Su
  Data: <searchLink fieldCode="DE" term="%22napadačev+trošak%22">napadačev trošak</searchLink><br /><searchLink fieldCode="DE" term="%22napadačeva+dobit%22">napadačeva dobit</searchLink><br /><searchLink fieldCode="DE" term="%22Cyber+Conflict+Simulator%22">Cyber Conflict Simulator</searchLink><br /><searchLink fieldCode="DE" term="%22napadački+resursi%22">napadački resursi</searchLink><br /><searchLink fieldCode="DE" term="%22formula+za+izračun+troška%22">formula za izračun troška</searchLink><br /><searchLink fieldCode="DE" term="%22skripta+za+izračun+troška%22">skripta za izračun troška</searchLink><br /><searchLink fieldCode="DE" term="%22attacker's+cost%22">attacker's cost</searchLink><br /><searchLink fieldCode="DE" term="%22attacker's+earnings%22">attacker's earnings</searchLink><br /><searchLink fieldCode="DE" term="%22attacker's+resources%22">attacker's resources</searchLink><br /><searchLink fieldCode="DE" term="%22cost+calculation+formula%22">cost calculation formula</searchLink><br /><searchLink fieldCode="DE" term="%22cost+calculation+script%22">cost calculation script</searchLink><br /><searchLink fieldCode="DE" term="%22TEHNIČKE+ZNANOSTI%2E+Računarstvo%22">TEHNIČKE ZNANOSTI. Računarstvo</searchLink><br /><searchLink fieldCode="DE" term="%22TECHNICAL+SCIENCES%2E+Computing%22">TECHNICAL SCIENCES. Computing</searchLink>
– Name: Abstract
  Label: Description
  Group: Ab
  Data: Unatoč kontinuiranom rastu kibernetičkog kriminala, pouzdane procjene ekonomske štete napadačke strane su rijetke. Ovaj rad se bavi problemom izračunavanja ekonomske štete i ukupne dobiti napadačke organizacije. Za simulaciju napada se koristi alat Cyber Conflict Simulator (CCS), alat specifično dizajniran za modeliranje i simuliranje kibernetičkih napada. U radu se daje pregled jedne napadačke organizacije te svih resursa koje njeni članovi troše prilikom napada. Pomoću dostupne literature je procjenjen trošak tih resursa te je model ukomponiran u napad. Za potrebe procjene troška je kreirana i Python skripta koja pokriva troškove na mjestima na kojima CCS nema sposobnost odrediti trošak. Izabran je jedan scenarij napada te se prolaskom kroz njega pokušala odrediti šteta i dobit napadačke organizacije koristeći sam CCS alat i napravljenu skriptu. ; Despite the continuous growth of cybercrime, reliable estimates of the economic damage to the attacker side are rare. This paper deals with the problem of calculating the economic damage and profit of an attacker organization. The Cyber Conflict Simulator (CCS) tool, specifically designed for modeling and simulating cyber attacks, is used to simulate attacks. The thesis provides an overview of an attacker organization and all the resources it uses during an attack. The cost of these resources was estimated using available literature, and the model was incorporated into the attack. To estimate the cost, a Python script was created that covers costs in places where the CCS is unable to determine the cost. One attack scenario was chosen and an attempt was made to determine the damage and profit of the attacker organization using the CCS tool itself and the script made.
– Name: TypeDocument
  Label: Document Type
  Group: TypDoc
  Data: bachelor thesis
– Name: Format
  Label: File Description
  Group: SrcInfo
  Data: application/pdf
– Name: Language
  Label: Language
  Group: Lang
  Data: Croatian
– Name: NoteTitleSource
  Label: Relation
  Group: SrcInfo
  Data: https://zir.nsk.hr/islandora/object/fer:10790; https://urn.nsk.hr/urn:nbn:hr:168:449477; https://repozitorij.unizg.hr/islandora/object/fer:10790; https://repozitorij.unizg.hr/islandora/object/fer:10790/datastream/PDF
– Name: URL
  Label: Availability
  Group: URL
  Data: https://zir.nsk.hr/islandora/object/fer:10790<br />https://urn.nsk.hr/urn:nbn:hr:168:449477<br />https://repozitorij.unizg.hr/islandora/object/fer:10790<br />https://repozitorij.unizg.hr/islandora/object/fer:10790/datastream/PDF
– Name: Copyright
  Label: Rights
  Group: Cpyrght
  Data: http://rightsstatements.org/vocab/InC/1.0/ ; info:eu-repo/semantics/closedAccess
– Name: AN
  Label: Accession Number
  Group: ID
  Data: edsbas.2CE77DF8
PLink https://erproxy.cvtisr.sk/sfx/access?url=https://search.ebscohost.com/login.aspx?direct=true&site=eds-live&db=edsbas&AN=edsbas.2CE77DF8
RecordInfo BibRecord:
  BibEntity:
    Languages:
      – Text: Croatian
    Subjects:
      – SubjectFull: napadačev trošak
        Type: general
      – SubjectFull: napadačeva dobit
        Type: general
      – SubjectFull: Cyber Conflict Simulator
        Type: general
      – SubjectFull: napadački resursi
        Type: general
      – SubjectFull: formula za izračun troška
        Type: general
      – SubjectFull: skripta za izračun troška
        Type: general
      – SubjectFull: attacker's cost
        Type: general
      – SubjectFull: attacker's earnings
        Type: general
      – SubjectFull: attacker's resources
        Type: general
      – SubjectFull: cost calculation formula
        Type: general
      – SubjectFull: cost calculation script
        Type: general
      – SubjectFull: TEHNIČKE ZNANOSTI. Računarstvo
        Type: general
      – SubjectFull: TECHNICAL SCIENCES. Computing
        Type: general
    Titles:
      – TitleFull: Određivanje ulaganja i dobiti napadača u provođenje napada ; Determining investment and gain for attackers when performing cyber attack
        Type: main
  BibRelationships:
    HasContributorRelationships:
      – PersonEntity:
          Name:
            NameFull: Baričević, Ivor
      – PersonEntity:
          Name:
            NameFull: Groš, Stjepan
    IsPartOfRelationships:
      – BibEntity:
          Dates:
            – D: 01
              M: 01
              Type: published
              Y: 2023
          Identifiers:
            – Type: issn-locals
              Value: edsbas
ResultId 1