DocumentCode :
3708330
Title :
Discarded hard disks ? A treasure trove for cybercriminals: A case study of recovered sensitive data from a discarded hard disk
Author :
Saad Zafar;Muhammad Babar Tiwana
Author_Institution :
Riphah Institute of Systems Engineering (RISE), Riphah International University, Islamabad, Pakistan
fYear :
2015
Firstpage :
1
Lastpage :
6
Abstract :
The modern malware poses serious security threats because of its evolved capability of using staged and persistent attack while remaining undetected over a long period of time to perform a number of malicious activities. The challenge for malicious actors is to gain initial control of the victim´s machine by bypassing all the security controls. The most favored bait often used by attackers is to deceive users through a trusting or interesting email containing a malicious attachment or a malicious link. To make the email credible and interesting the cybercriminals often perform reconnaissance activities to find background information on the potential target. To this end, the value of information found on the discarded or stolen storage devices is often underestimated or ignored. In this paper, we present the partial results of analysis of one such hard disk that was purchased from the open market. The data found on the disk contained highly sensitive personal and organizational data. The results from the case study will be useful in not only understanding the involved risk but also creating awareness of related threats.
Keywords :
"Malware","Media","Hard disks","Electronic mail","Organizations","Software"
Publisher :
ieee
Conference_Titel :
Anti-Cybercrime (ICACC), 2015 First International Conference on
Type :
conf
DOI :
10.1109/Anti-Cybercrime.2015.7351956
Filename :
7351956
Link To Document :
بازگشت