Beyond Blacklisting: Cyberdefense in the Era of Advanced Persistent Threats

被引:15
|
作者
Beuhring, Aaron
Salous, Kyle
机构
关键词
advanced persistent threats; APT; blacklisting; computer security; cyberdefense; security; whitelisting;
D O I
10.1109/MSP.2014.86
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Signature-based detection is no longer an effective way to detect and block malware; whitelisting is much more effective. Whitelisting can vastly reduce an organization's attack surface, letting defenders focus on more advanced threats. It also can force attackers to use expensive exploits to execute code remotely and can make it difficult for attackers to maintain persistence. Many organizations already own tools to implement whitelisting, so the only cost is the time and effort to properly implement them. © 2014 IEEE.
引用
收藏
页码:90 / 93
页数:4
相关论文
共 50 条
  • [1] Advanced Persistent Threats
    Ozzengin, Yavuz Selim
    Sakiz, Fatih
    Benzer, Recep
    [J]. 2016 24TH SIGNAL PROCESSING AND COMMUNICATION APPLICATION CONFERENCE (SIU), 2016, : 1845 - 1848
  • [2] A Study on Advanced Persistent Threats
    Chen, Ping
    Desmet, Lieven
    Huygens, Christophe
    [J]. COMMUNICATIONS AND MULTIMEDIA SECURITY, CMS 2014, 2014, 8735 : 63 - 72
  • [3] Advanced Persistent Threats & Social Engineering
    Weippl, Edgar
    [J]. 2014 11TH INTERNATIONAL CONFERENCE ON E-BUSINESS (ICE-B), 2014, : IS21 - IS21
  • [4] A Practical Study on Advanced Persistent Threats
    Jeun, Inkyung
    Lee, Youngsook
    Won, Dongho
    [J]. COMPUTER APPLICATIONS FOR SECURITY, CONTROL AND SYSTEM ENGINEERING, 2012, 339 : 144 - +
  • [5] Advanced Persistent Threats - Detection and Defense
    Vukalovic, J.
    Delija, D.
    [J]. 2015 8TH INTERNATIONAL CONVENTION ON INFORMATION AND COMMUNICATION TECHNOLOGY, ELECTRONICS AND MICROELECTRONICS (MIPRO), 2015, : 1324 - 1330
  • [6] Advanced Persistent Threats in Autonomous Driving
    Kant K.
    [J]. Kant, Krishna (kkant@temple.edu), 1600, Association for Computing Machinery, 2 Penn Plaza, Suite 701, New York, NY 10121-0701, United States (47): : 25 - 28
  • [7] Advanced Persistent Threats: Behind the Scenes
    Ussath, Martin
    Jaeger, David
    Cheng, Feng
    Meinel, Christoph
    [J]. 2016 ANNUAL CONFERENCE ON INFORMATION SCIENCE AND SYSTEMS (CISS), 2016,
  • [8] Advanced Persistent Threats & Social Engineering
    Weippl, Edgar
    [J]. 2014 INTERNATIONAL CONFERENCE ON SIGNAL PROCESSING AND MULTIMEDIA APPLICATIONS (SIGMAP), 2014, : IS13 - IS13
  • [9] An Exploration on Advanced Persistent Threats in Biocybersecurity and Cyberbiosecurity
    Palmer, Xavier-Lewis
    Potter, Lucas
    Karahan, Saltuk
    [J]. PROCEEDINGS OF THE 17TH INTERNATIONAL CONFERENCE ON CYBER WARFARE AND SECURITY (ICCWS 2022), 2022, : 532 - 535
  • [10] Surviving Advanced Persistent Threats - a Framework and Analysis
    Mehresh, Ruchika
    Upadhyaya, Shambhu
    [J]. PROCEEDINGS OF THE 10TH INTERNATIONAL CONFERENCE ON CYBER WARFARE AND SECURITY (ICCWS-2015), 2015, : 445 - 454