Analysis and Modeling of Advanced Persistent Threat through Case Study 


Vol. 46,  No. 12, pp. 1328-1338, Dec.  2019
10.5626/JOK.2019.46.12.1328


PDF

  Abstract

Advanced Persistent Threat(APT) attack is one of the cyber-attack methods that continuously attacks the specific target with advanced tools. Since attackers use various methods that are specialized to targets, it is difficult to prevent the attacks with common security countermeasures. Currently, there exist various the APT attack stage models. However, the models only express APT attacks simply. Consequently, it is difficult to use them for risk assessment or as a recommendation for security requirements for a specific system. In order to overcome the limitations of such models, we derived factors of APT attack through a case study for defining the features of APT attack. We have also analyzed and defined the factors and their relationships to construct the APT attack factor model. For validation purpose, the model applied to the actual attack case has been referred to as ‘APT 1’. Through the proposed model, it would be possible to gain understanding about the overall flow of APT attacks and classify attack factors not only in terms of technical aspects but also with respect to social engineering facets.


  Statistics
Cumulative Counts from November, 2022
Multiple requests among the same browser session are counted as one view. If you mouse over a chart, the values of data points will be shown.


  Cite this article

[IEEE Style]

M. Kim and S. Lee, "Analysis and Modeling of Advanced Persistent Threat through Case Study," Journal of KIISE, JOK, vol. 46, no. 12, pp. 1328-1338, 2019. DOI: 10.5626/JOK.2019.46.12.1328.


[ACM Style]

MinJu Kim and Seok-Won Lee. 2019. Analysis and Modeling of Advanced Persistent Threat through Case Study. Journal of KIISE, JOK, 46, 12, (2019), 1328-1338. DOI: 10.5626/JOK.2019.46.12.1328.


[KCI Style]

김민주, 이석원, "사례 분석을 통한 지능형 지속 위협의 요소 분석 및 모델 설계," 한국정보과학회 논문지, 제46권, 제12호, 1328~1338쪽, 2019. DOI: 10.5626/JOK.2019.46.12.1328.


[Endnote/Zotero/Mendeley (RIS)]  Download


[BibTeX]  Download



Search




Journal of KIISE

  • ISSN : 2383-630X(Print)
  • ISSN : 2383-6296(Electronic)
  • KCI Accredited Journal

Editorial Office

  • Tel. +82-2-588-9240
  • Fax. +82-2-521-1352
  • E-mail. chwoo@kiise.or.kr