Method for the Detection of Internal Threats in Academic Campus Networks

Ruth Barba-Vera, Byron Barragán-González, Marco Ramos-Valencia, Carmen Mantilla-Cabrera, Byron Vaca-Barahona, Carlos Silva-Cárdenas

Producción científica: Capítulo del libro/informe/acta de congresoContribución a la conferenciarevisión exhaustiva

Resumen

The current academic campus intranets demand higher requirements to satisfy the needs of their users. The greatest threat lies in the people with access to and knowledge of the organization. This research adapts the OSSTMM V 3.0 methodology to estimate the security breaches caused by the human channel (users) within the intranet, measuring porosity, limitations, and processes, evaluating the security risk (Rav) in 85.77%, and determining 13.92% of vulnerabilities and anomalies that an internal user can exploit. The analysis of the intranet with NIDS-SNORT (Network Intrusion Detection System) to determine internal threats in real-time corroborates the analysis of the human channel. The identified threats allow an exploitation study of SMB EternalBlue to be carried out, which enables the evaluation of the affectation of the threats to the users in a test scenario, in addition to the solution to these vulnerabilities. This novel method using free software responds to Ecuadorian universities’ need to have a standard that, based on vulnerability analysis, allows the implementation of security policies at the institutional level.

Idioma originalInglés
Título de la publicación alojadaProceedings of the International Conference on Computer Science, Electronics and Industrial Engineering (CSEI 2023) - Innovations in Industrial Engineering and Robotics in Industry - Bridging the Gap Between Theory and Practical Application
EditoresMarcelo V. Garcia, Carlos Gordón-Gallegos, Asier Salazar-Ramírez, Carlos Nuñez
EditorialSpringer Science and Business Media Deutschland GmbH
Páginas319-337
Número de páginas19
ISBN (versión impresa)9783031709807
DOI
EstadoPublicada - 2024
EventoInternational Conference on Computer Science, Electronics and Industrial Engineering, CSEI 2023 - Ambato, Ecuador
Duración: 6 nov. 202310 nov. 2023

Serie de la publicación

NombreLecture Notes in Networks and Systems
Volumen797 LNNS
ISSN (versión impresa)2367-3370
ISSN (versión digital)2367-3389

Conferencia

ConferenciaInternational Conference on Computer Science, Electronics and Industrial Engineering, CSEI 2023
País/TerritorioEcuador
CiudadAmbato
Período6/11/2310/11/23

Huella

Profundice en los temas de investigación de 'Method for the Detection of Internal Threats in Academic Campus Networks'. En conjunto forman una huella única.

Citar esto