Breaking the Target: An Analysis of Target Data Breach and Lessons Learned

Breaking the Target: An Analysis of Target Data Breach and Lessons Learned
复制标题

破坏目标:目标数据泄露分析及经验教训

DOI:
--
复制
发表时间:
2017
期刊:
arXiv.org
影响因子:
--
通讯作者:
D. Yao
D. Yao
中科院分区:
--
文献类型:
--
作者:
Xiaokui Shu;K. Tian;Andrew Ciambrone;D. Yao

文献摘要

参考文献

被引文献

相似文献

本文调查和研究导致历史上第二大破坏性数据泄露的事件:对目标公司的攻击。它包括对这种攻击的全面分析,以及对名为BlackPOS的恶意软件的全面剖析。此外,本文提供了洞察网络犯罪的法律的方面,沿着起诉和判决的例子,著名的TJX的情况。此外,我们指出,迫切需要改善现有系统的安全机制的商人,并提出了三个安全准则和防御。信用卡的安全性在文章的最后讨论了几个最佳实践给客户隐藏他们的卡信息在购买交易。
This paper investigates and examines the events leading up to the second most devastating data breach in history: the attack on the Target Corporation. It includes a thorough step-by-step analysis of this attack and a comprehensive anatomy of the malware named BlackPOS. Also, this paper provides insight into the legal aspect of cybercrimes, along with a prosecution and sentence example of the well-known TJX case. Furthermore, we point out an urgent need for improving security mechanisms in existing systems of merchants and propose three security guidelines and defenses. Credit card security is discussed at the end of the paper with several best practices given to customers to hide their card information in purchase transactions.
阅读本文可能会损害您的计算机:恶意软件警告的心理学
DOI: 10.1016/j.chb.2014.09.014
发表时间: 2014
影响因子: 9.9
作者:
Modic D
通讯作者: Modic D