Analysis of Human Factors in Cyber Security: A Case Study of Anonymous Attack on Hbgary

dc.contributor.authorGyunka, Benjamin Aruwa
dc.contributor.authorAbikoye, Oluwakemi Christiana
dc.date.accessioned2018-03-21T10:04:38Z
dc.date.available2018-03-21T10:04:38Z
dc.date.issued2017
dc.description.abstractPurpose: This paper critically analyses the human factors or behaviours as major threats to cyber security. Focus is placed on the usual roles played by both the attackers and defenders (the targets of the attacker) in cyber threats’ pervasiveness and the potential impacts of such actions on critical security infrastructures. Design/Methodology/Approach: To enable an effective and practical analysis, the Anonymous attack against HBGary Federal (A security firm in the United State of America) was taken as a case study to reveal the huge damaging impacts of human errors and attitudes against the security of organizations and individuals. Findings: The findings revealed that the powerful security firm was compromised and overtaken through simple SQL injection techniques and a very crafty social engineering attack which succeeded because of sheer personnel negligence and unwitting utterances. The damage caused by the attack was enormous and it includes the exposure of very sensitive and personal data, complete shutdown of the website, loss of backup data and personnel character deformations. The research also found that damaging human factors results from ignorance or illiteracy to basic security practices, carelessness and sometimes sabotage by disgruntled employees from within and these vulnerabilities have become prime target for exploitation by attackers through social engineering attacks. Social engineering was also discovered to be the leading attack technique adopted by attackers within the cyber space in recent years. Practical Implications: The paper concludes by advocating assiduous training and cyber securityawareness programmes for workforces and the implementations and maintenance of basic security culture and policies as a panacea for social engineering cyber attacks against individuals and organizations. Originality: Lots of work has been done and many still on-going in the field of social engineering attacks and human factors, but this study is the first to adopt an approach of a practical case study to critically analyze the effects of human factors on cyber security.en_US
dc.identifier.citationBenjamin, A.G. & Abikoye, O.C. (2017): Analysis of Human Factors in Cyber Security: A Case Study of Anonymous Attack on Hbgary. Computing and Information Systems Journal. 21(2); 10-18,en_US
dc.identifier.urihttp://cis.uws.ac.uk/research/journal/V21n2.pdf
dc.identifier.urihttp://hdl.handle.net/123456789/133
dc.language.isoenen_US
dc.publisherSchool of Engineering and Computing, University of the West of Scotland, Paisley.en_US
dc.subjectThe Anonymousen_US
dc.subjectHBGary Federalen_US
dc.subjectUniform Resource Location (URL);en_US
dc.subjectContent Management System (CMS)en_US
dc.subjectSQL Injectionen_US
dc.subjectCross-site Scripting (XXS)en_US
dc.subjectSocial Engineeringen_US
dc.subjectCyber Securityen_US
dc.subjectInformation Securityen_US
dc.titleAnalysis of Human Factors in Cyber Security: A Case Study of Anonymous Attack on Hbgaryen_US
dc.typeArticleen_US

Files

Original bundle
Now showing 1 - 1 of 1
No Thumbnail Available
Name:
V21n2AbikoyeBenjamin.pdf
Size:
6.62 MB
Format:
Adobe Portable Document Format
Description:
Main Article
License bundle
Now showing 1 - 1 of 1
No Thumbnail Available
Name:
license.txt
Size:
1.69 KB
Format:
Item-specific license agreed upon to submission
Description:

Collections