Survey and Taxonomy of Adversarial Reconnaissance Techniques


연구 분야: Strategies



학회: ACM Computing Surveys, Volume 55, Issue 6


초록

Adversaries are often able to penetrate networks and compromise systems by exploiting vulnerabilities in people and systems. The key to the success of these attacks is information that adversaries collect throughout the phases of the cyber kill chain. We summarize and analyze the methods, tactics, and tools that adversaries use to conduct reconnaissance activities throughout the attack process. First, we discuss what types of information adversaries seek and how and when they can obtain this information. Then, we provide a taxonomy and detailed overview of adversarial reconnaissance techniques. The taxonomy introduces a categorization of reconnaissance techniques based on the source as third-party and human-, and system-based information gathering. This article provides a comprehensive view of adversarial reconnaissance that can help in understanding and modeling this complex but vital aspect of cyber attacks as well as insights that can improve defensive strategies, such as cyber deception.


Author Profile
Shanto Roy

University of Houston Houston USA

United States
Author Profile
Nazia Sharmin

University of Texas at El Paso USA

Austria
Author Profile
Jaime C Acosta

DEVCOM Army Research Laboratory Adelphi USA

United States

📄 논문 정보

발행 연도 2022년
인용수 45
출판 국가 United States, Austria
사이트 ACM
좋아요 수 0

연관 논문 목록 (166건)