-
Book Overview & Buying
-
Table Of Contents
How to Measure Anything in Cybersecurity Risk
By :
A “botnet” is a cyberattack created by malware that penetrates numerous computers, which may then be directed by a command-and-control server to form a network that carries out illegal activity. Eventually this server will be identified as a threat, whereupon future communication with it is blocked. Once the dangerous site is discovered, the communications history of the infected computers can pinpoint the first contact with the offending server and yield valuable statistics.
Suppose you have invested in two layers of network security. There is a 60% chance that a botnet virus will be discovered by the first layer, in which case the time to detection averages 20 days, with a distribution as displayed in the left side of Figure B.5. Note that the average may be thought of as the balance point of the graph, marked by
. In the remaining 40% of cases the virus is not discovered until the second layer of your security system, in which case the average detection...
Change the font size
Change margin width
Change background colour