Information Leakage through online social networking: opening the doorway for advanced persistence threats

The explosion of online social networking (OSN) in recent years has caused damages to organizations due to leakage of information by their employees. Employees’ social networking behaviour, whether accidental or intentional, provides an opportunity for advanced persistent threats (APT) attackers to...

Full description

Saved in:
Bibliographic Details
Main Authors: Abdul Molok , Nurul Nuha, Ahmad, Atif, Chang, Shanton
Format: Article
Language:English
Published: Australian Institute of Professional Intelligence Officers (AIPIO) 2011
Subjects:
Online Access:http://irep.iium.edu.my/33075/1/AIPIO_Vol_19_No_2_2011_Information_Leakage_thru_OSN.pdf
http://irep.iium.edu.my/33075/
http://www.aipio.asn.au
Tags: Add Tag
No Tags, Be the first to tag this record!
id my.iium.irep.33075
record_format dspace
spelling my.iium.irep.330752013-12-04T03:56:27Z http://irep.iium.edu.my/33075/ Information Leakage through online social networking: opening the doorway for advanced persistence threats Abdul Molok , Nurul Nuha Ahmad, Atif Chang, Shanton H61.8 Communication of information T58.6 Management information systems The explosion of online social networking (OSN) in recent years has caused damages to organizations due to leakage of information by their employees. Employees’ social networking behaviour, whether accidental or intentional, provides an opportunity for advanced persistent threats (APT) attackers to realize their social engineering techniques and undetectable zero-day exploits. APT attackers use a spear-phishing method that targets key employees of victim organizations through social media in order to conduct reconnaissance and theft of confidential proprietary information. This conceptual paper posits OSN as the most challenging channel of information leakage for organizations and explores the underlying factors that influence employee behaviour through a theoretical lens from information systems. It also describes how OSN becomes an attack vector of APT owing to employees’ social networking behaviour, and finally, discusses security education, training and awareness (SETA) for organizations to combat these threats. Australian Institute of Professional Intelligence Officers (AIPIO) 2011-07 Article REM application/pdf en http://irep.iium.edu.my/33075/1/AIPIO_Vol_19_No_2_2011_Information_Leakage_thru_OSN.pdf Abdul Molok , Nurul Nuha and Ahmad, Atif and Chang, Shanton (2011) Information Leakage through online social networking: opening the doorway for advanced persistence threats. The Journal of the Australian Institute of Professional Intelligence Officers (AIPIO), 19 (2). pp. 38-55. ISSN 1039-1525 http://www.aipio.asn.au
institution Universiti Islam Antarabangsa Malaysia
building IIUM Library
collection Institutional Repository
continent Asia
country Malaysia
content_provider International Islamic University Malaysia
content_source IIUM Repository (IREP)
url_provider http://irep.iium.edu.my/
language English
topic H61.8 Communication of information
T58.6 Management information systems
spellingShingle H61.8 Communication of information
T58.6 Management information systems
Abdul Molok , Nurul Nuha
Ahmad, Atif
Chang, Shanton
Information Leakage through online social networking: opening the doorway for advanced persistence threats
description The explosion of online social networking (OSN) in recent years has caused damages to organizations due to leakage of information by their employees. Employees’ social networking behaviour, whether accidental or intentional, provides an opportunity for advanced persistent threats (APT) attackers to realize their social engineering techniques and undetectable zero-day exploits. APT attackers use a spear-phishing method that targets key employees of victim organizations through social media in order to conduct reconnaissance and theft of confidential proprietary information. This conceptual paper posits OSN as the most challenging channel of information leakage for organizations and explores the underlying factors that influence employee behaviour through a theoretical lens from information systems. It also describes how OSN becomes an attack vector of APT owing to employees’ social networking behaviour, and finally, discusses security education, training and awareness (SETA) for organizations to combat these threats.
format Article
author Abdul Molok , Nurul Nuha
Ahmad, Atif
Chang, Shanton
author_facet Abdul Molok , Nurul Nuha
Ahmad, Atif
Chang, Shanton
author_sort Abdul Molok , Nurul Nuha
title Information Leakage through online social networking: opening the doorway for advanced persistence threats
title_short Information Leakage through online social networking: opening the doorway for advanced persistence threats
title_full Information Leakage through online social networking: opening the doorway for advanced persistence threats
title_fullStr Information Leakage through online social networking: opening the doorway for advanced persistence threats
title_full_unstemmed Information Leakage through online social networking: opening the doorway for advanced persistence threats
title_sort information leakage through online social networking: opening the doorway for advanced persistence threats
publisher Australian Institute of Professional Intelligence Officers (AIPIO)
publishDate 2011
url http://irep.iium.edu.my/33075/1/AIPIO_Vol_19_No_2_2011_Information_Leakage_thru_OSN.pdf
http://irep.iium.edu.my/33075/
http://www.aipio.asn.au
_version_ 1643610357260877824
score 13.211869