Post on 05-Dec-2014
description
Зарубежная аналитика по утечками информации
(data breach) часть 2 2014-04
Прозоров Андрей, блог «Жизнь 80 на 20» http://80na20.blogspot.ru Твиттер: @3dwave
Источники
Vormetric (+Enterprise Strategy Group)
• Методология: анкетирование / опросы
• http://www.vormetric.com
• Отчеты:
– «The 2013 Vormetric Insider Threat Report» 2013-10 [1.1]
insider threats - threats posed by employees, third parties, or malicious software that uses legitimate access rights to networks, applications, and sensitive data as an attack vector
[1.1]
[1.1]
[1.1]
[1.1]
[1.1]
[1.1]
[1.1]
[1.1]
+ отчет Symantec + отчет PWC
+ Verizon +может CISCO
http://www.verizonenterprise.com/DBIR/2014/reports/rp_Verizon-DBIR-2014_en_xg.pdf
Verizon
• Отчеты ведут с 2008
• http://www.verizonenterprise.com
• Методология: анализ инцидентов ИБ, предоставляемых внешними организациями (CERT, Australian Federal Police, Dutch Police и пр.)
• Отчеты:
– «2014 Data Breach Investigations report» [2.1]
[2.1]
[2.1]
[2.1]
Top 20 varieties of threat actions over time
[2.1]
[2.1]
[2.1]
[2.1]
[2.1]
[2.1]
[2.1]
[2.1]
[2.1]
[2.1]
[2.1]
[2.1]
[2.1]
[2.1]
[2.1]
[2.1]
[2.1]
[2.1]
[2.1]
[2.1]
[2.1]
[2.1]
[2.1]
[2.1]
[2.1]
[2.1]
[2.1]
[2.1]
[2.1]
[2.1]
[2.1]
Symantec
• Методология: мониторинг СМИ
• http://www.symantec.com
• Отчеты:
– «2014 Internet Security Threat Report, Volume 19» [3.1]
[2.1]
[2.1]
[2.1]
[2.1]
[2.1]
[2.1]
PwC
• Методология: анкетирование / опросы
• http://www.pwc.com
• Отчеты:
– «На правильном пути. Российский озор экономических преступлений за 2014 год» [4.1]
Не совсем про утечки, но тема смежная…
[4.1]
[4.1]
[4.1]
[4.1]
[4.1]
[4.1]
[4.1]
[4.1]
[4.1]
TrendMicro
• Методология: мониторинг СМИ
• www.trendmicro.com
• Отчеты:
– «Cashing in on Digital Information. An Onslaught of Online Banking Malwareand Ransomware» 2014 [5.1]
[5.1]
Прозоров Андрей, блог «Жизнь 80 на 20» http://80na20.blogspot.ru Твиттер: @3dwave