• DocumentCode
    3714123
  • Title

    The SNAP principle for mitigating privileged account breaches: How secondary non-admin privileged accounts can reduce breach impact

  • Author

    Samuel Moses;Dale C. Rowe

  • Author_Institution
    BYU Cyber Security Research Lab Provo, Utah, USA
  • fYear
    2015
  • Firstpage
    32
  • Lastpage
    38
  • Abstract
    In this paper, we discuss how using Secondary Non-Admin Privileged (SNAP) accounts can mitigate a variety of attacks targeting privileged accounts. We present our methodology for implementing this approach and discuss how this can prevent a variety of attack-types. We note that other studies have shown that over 92 % of critical vulnerabilities require administrative access and present multiple case-studies that demonstrate the effectiveness of this solution. We also propose procedural, technical and educational processes that will increase the effectiveness of this approach.
  • Keywords
    "Security","Computers","Best practices","Companies","Internet","Software"
  • Publisher
    ieee
  • Conference_Titel
    Internet Security (WorldCIS), 2015 World Congress on
  • Type

    conf

  • DOI
    10.1109/WorldCIS.2015.7359408
  • Filename
    7359408