DocumentCode
3714123
Title
The SNAP principle for mitigating privileged account breaches: How secondary non-admin privileged accounts can reduce breach impact
Author
Samuel Moses;Dale C. Rowe
Author_Institution
BYU Cyber Security Research Lab Provo, Utah, USA
fYear
2015
Firstpage
32
Lastpage
38
Abstract
In this paper, we discuss how using Secondary Non-Admin Privileged (SNAP) accounts can mitigate a variety of attacks targeting privileged accounts. We present our methodology for implementing this approach and discuss how this can prevent a variety of attack-types. We note that other studies have shown that over 92 % of critical vulnerabilities require administrative access and present multiple case-studies that demonstrate the effectiveness of this solution. We also propose procedural, technical and educational processes that will increase the effectiveness of this approach.
Keywords
"Security","Computers","Best practices","Companies","Internet","Software"
Publisher
ieee
Conference_Titel
Internet Security (WorldCIS), 2015 World Congress on
Type
conf
DOI
10.1109/WorldCIS.2015.7359408
Filename
7359408
Link To Document