Publicación: Forensic Analysis of Cyber Attacks Using the Cyber Kill Chain Model to Enhance Antivirus Protection in an IT Solutions Company
| dc.contributor.author | Vilchez, Eduardo | |
| dc.contributor.author | Davila, Junior | |
| dc.contributor.author | Ticona, Wilfredo | |
| dc.date.accessioned | 2025-08-11T16:43:53Z | |
| dc.date.issued | 2024 | |
| dc.description.abstract | Currently, a significant number of cyber-attacks continue to be successfully executed in Peru due to a lack of understanding of the life cycle or phases of an attack. To address this, information was collected on a set of attacks detected by a company's antivirus solution with the aim of analyzing and categorizing them based on the phases of the Cyber Kill Chain model. To assess the effectiveness of the implemented antivirus solution's protection, metrics were employed for detection, blocking, neutralization, and compromise. Mitigation actions considered the real-time blocking level, heuristic analysis, behavior monitoring, traffic inspection, and data recovery. The results indicate an improvement when combining antivirus protection with the Cyber Kill Chain methodology, raising the effectiveness rate from 80% to 100% for the successfully compromised threat. © The Author(s), under exclusive license to Springer Nature Switzerland AG 2024. | |
| dc.identifier.doi | 10.1007/978-3-031-70300-3_16 | |
| dc.identifier.scopus | 2-s2.0-85208062243 | |
| dc.identifier.uri | https://cris.esan.edu.pe/handle/20.500.12640/685 | |
| dc.identifier.uuid | cca2babe-c4a7-4b24-a78e-af4e3fb4467b | |
| dc.language.iso | en | |
| dc.publisher | Springer Science and Business Media Deutschland GmbH | |
| dc.relation.ispartof | Lecture Notes in Networks and Systems | |
| dc.rights | http://purl.org/coar/access_right/c_14cb | |
| dc.subject | Cyber Kill Chain | |
| dc.subject | Cyber-attack | |
| dc.subject | Exploits | |
| dc.subject | Forensic Analysis | |
| dc.subject | Persistence | |
| dc.subject | Vulnerability | |
| dc.title | Forensic Analysis of Cyber Attacks Using the Cyber Kill Chain Model to Enhance Antivirus Protection in an IT Solutions Company | |
| dc.type | http://purl.org/coar/resource_type/c_5794 | |
| dspace.entity.type | Publication | |
| oaire.citation.endPage | 255 | |
| oaire.citation.startPage | 241 |