scispace - formally typeset
Search or ask a question

Showing papers on "Vulnerability (computing) published in 1984"


Book
01 Jan 1984
TL;DR: The Fourth Edition of Risk Analysis and the Security Survey as discussed by the authors provides a comprehensive overview of the most fundamental theories surrounding risk control, design, and implementation by reviewing topics such as cost/benefit analysis, crime prediction, response planning, and business impact analysis.
Abstract: As there is a need for careful analysis in a world where threats are growing more complex and serious, you need the tools to ensure that sensible methods are employed and correlated directly to risk. Counter threats such as terrorism, fraud, natural disasters, and information theft with the Fourth Edition of Risk Analysis and the Security Survey. Broder and Tucker guide you throughanalysis toimplementationto provide you with the know-how to implement rigorous, accurate, and cost-effective security policies and designs. This book builds on the legacy of its predecessors by updating and covering new content. Understand the most fundamental theories surrounding risk control, design, and implementation by reviewing topics such as cost/benefit analysis, crime prediction, response planning, and business impact analysis--all updated to match today's current standards. This book will show you how to develop and maintain current business contingency and disaster recovery plans to ensure your enterprises are able to sustain loss are able to recover, and protect your assets, be it your business, your information,or yourself,from threats. *Offers powerful techniques for weighing and managing the risks that face your organization *Gives insights into universal principles that can be adapted to specific situations and threats *Covers topics needed by homeland security professionals as well as IT and physical security managers Table of Contents Part I: The Treatment and Analysis of Risk Chapter 1: Risk Chapter 2: Vulnerability and Threat Identification Chapter 3: Risk Measurement Chapter 4: Quantifying and Prioritizing Loss Potential Chapter 5: Cost/Benefit Analysis Chapter 6: Other Risk Analysis Methodologies Chapter 7: The Security Survey: An Overview Chapter 8: Management Audit Techniques and the Preliminary Survey Chapter 9: The Survey Report Chapter 10: Crime Prediction Chapter 11: Determining Insurance Requirements Part II: Emergency Managment and Business Continuity Planning Chapter 12: Emergency Management: A Brief Introduction Chapter 13: Mitigation and Preparedness Chapter 14: Response Planning Chapter 15: Business Impact Analysis Chapter 16: Business Continuity Planning Chapter 17: Plan Documentation Chapter 18: Crisis Management Planning for Kidnap, Ransom, and Extortion Chapter 19: Monitoring Safeguards Chapter 20: The Security Consultant Appendix A: Security Survey Work Sheets Appendix B: Sample Kidnap and Ransom Contingency Plan Appendix C: Security Systems Specifications

77 citations


Journal ArticleDOI
TL;DR: The various aspects of computer crime are discussed from the viewpoint of the vulnerability of computer systems to information destruction, data diddling, theft of service, browsing, and theft of information.
Abstract: The various aspects of computer crime are discussed from the viewpoint of the vulnerability of computer systems to information destruction, data diddling, theft of service, browsing, and theft of information. Also discussed are various methods to limit or reduce vulnerability to these types of attack.

19 citations


Journal ArticleDOI
TL;DR: The terminological and conceptual background in which national and international information policy have developed are described and legislation applying to personal information, concerns over data security and vulnerability of information systems and economic policy aspects are reviewed.

6 citations


Journal ArticleDOI
TL;DR: The author looks at the need for new computer security methods as well as the practical limits to the level of security that can be attained.
Abstract: The author looks at the need for new computer security methods as well as the practical limits to the level of security that can be attained. He discusses a theory of information security which is based on the concepts of safeguard principles and of objects and subjects.

6 citations


Journal ArticleDOI
TL;DR: Congress has been taking an active interest in protecting information stored in computers, and recent accounts of “system hackers” describe young students and others who gain illegal access to systems, thereby obtaining information and services, as well as disrupting systems.
Abstract: Congress has been taking an active interest in protecting information stored in computers. Congressional investigations and media reports have highlighted the vulnerability of computer systems to abuse and mis-use. Recent accounts of “system hackers” describe young students and others who gain illegal access to systems, thereby obtaining information and services, as well as disrupting systems.

4 citations



01 Jan 1984
TL;DR: In this paper, the authors present a systematic description, delineation and quantification of the vulnerability of individual critical components and of the total target vulnerability is known as a vulnerability assessment, which is the characteristic of a target which describes its sensitivity to combat damage mechanisms.
Abstract: : Vulnerability is a quantitative measure of the susceptibility of a target structure or material to a given damage mechanism - it is the characteristic of a target which describes its sensitivity to combat damage mechanisms The systematic description, delineation and quantification of the vulnerability of the individual critical components and of the total target vulnerability is known as a vulnerability assessment Certain elements of a vulnerability assessment are common to all analyses, regardless of the threat considered The logic elements of such an assessment are: (1) definition of the problem: (2) an assembly of the physical and functional descriptions of the target; (3) description of the specific threats the target will encounter and their associated damage mechanisms (penetration, fire, etc); (4) preparation of the target description; (5) identification of the critical components and determination of the target's damage-caused failure modes for the selected kill categories in terms of the critical components; (6) determination of the conditional probabilities of kill for each critical component and the single shot expected repair times for damaged components; and (7) computation of the vulnerability measures for the whole target based upon the selected threat

1 citations


Proceedings ArticleDOI
28 Aug 1984
TL;DR: A review of the recent international discussions on this issue, identifying known problem areas, and discusses possible ameliorating measures can be found in this paper, which raises a number of related questions which need to be examined.
Abstract: The world is becoming increasingly dependent on computers and communications. As these systems become more pervasive, there is a growing concern about the possibility of computer and communications network failure leading to damages for a significant segment of the population and, potentially, to the weakening of social stability. There is disagreement and concern over whether today's increasingly interconnected computer systems are more vulnerable than resilient. This paper reviews the recent international discussions on this issue, identifies known problem areas, and discusses possible ameliorating measures. Finally, it raises a number of related questions which need to be examined.

Journal ArticleDOI
TL;DR: The article describes the two types of algorithm involved in cryptographic techniques and their applications in the area of computer system security.