Targeted attacks;
Mass attacks;
Information security;
Security requirements;
D O I:
暂无
中图分类号:
学科分类号:
摘要:
This paper investigates information security investment strategies under both targeted attacks and mass attacks by considering strategic interactions between two competitive firms and a hacker. We find that the more attractive firm invests more in information security, suffers more frequent attacks and enjoys a lower expected benefit, while the hacker achieves a higher expected benefit under targeted attacks than under mass attacks. We further examine the effect of security requirements on the two firms’ investment strategies in information security. We indicate that security requirements sometimes can drastically alter the comparisons of these investment strategies under the two types of cyber attacks. The hacker would balance the firms’ attractiveness in information assets and security requirements when determining its investment decisions in cyber attacks. By assuming that security requirements are endogenous, we demonstrate that under targeted attacks and mass attacks both firms would like to regulate rigorous security requirements when their degree of competition becomes fierce but would like to choose loose security requirements when the degree of competition remains mild.
机构:
Donghua Univ, Glorious Sun Sch Business & Management, Shanghai 200051, Peoples R ChinaDonghua Univ, Glorious Sun Sch Business & Management, Shanghai 200051, Peoples R China
Wu, Yong
Xu, Mengyao
论文数: 0引用数: 0
h-index: 0
机构:
Donghua Univ, Glorious Sun Sch Business & Management, Shanghai 200051, Peoples R ChinaDonghua Univ, Glorious Sun Sch Business & Management, Shanghai 200051, Peoples R China
Xu, Mengyao
Cheng, Dong
论文数: 0引用数: 0
h-index: 0
机构:
Donghua Univ, Glorious Sun Sch Business & Management, Shanghai 200051, Peoples R ChinaDonghua Univ, Glorious Sun Sch Business & Management, Shanghai 200051, Peoples R China
Cheng, Dong
Dai, Tao
论文数: 0引用数: 0
h-index: 0
机构:
Donghua Univ, Glorious Sun Sch Business & Management, Shanghai 200051, Peoples R ChinaDonghua Univ, Glorious Sun Sch Business & Management, Shanghai 200051, Peoples R China
机构:
Sangmyung Univ, Div Business Adm, Coll Business, Seoul, South KoreaDongduk Womens Univ, Dept Business Management & Econ, Coll Social Sci, Seoul, South Korea
Chai, Sangmi
Kim, Minkyun
论文数: 0引用数: 0
h-index: 0
机构:
Dongduk Womens Univ, Dept Business Management & Econ, Coll Social Sci, Seoul, South KoreaDongduk Womens Univ, Dept Business Management & Econ, Coll Social Sci, Seoul, South Korea
Kim, Minkyun
Rao, H. Raghav
论文数: 0引用数: 0
h-index: 0
机构:
SUNY Buffalo, Sch Management, Dept Management Sci & Syst, Buffalo, NY 14260 USADongduk Womens Univ, Dept Business Management & Econ, Coll Social Sci, Seoul, South Korea