Cybernetic System Technologies to Counter Passive and Active Cyberattacks
摘要
The main causes and properties of cyber-attacks are examined and analyzed using specific examples of program codes, and potential sources of their proliferation through operating system registry keys and operating system directories are identified. One of the main characteristics of cyberattacks is their high anonymity, uncertainty of start and end times, and potential tracelessness, which allows attackers to carry them out countless times. The shortcomings of some modern threat detection methods, specifically hash-based checks, using specific examples are also demonstrated. To prevent and mitigate cyber threats, several organizational measures, such as detecting hidden programs disguised as static documents of well-known applications or pseudo-programs and virus bodies disguised as executable files that do not raise suspicion of popular antivirus scanners, are proposed. To address the identified shortcomings, the chapter proposes the development of several types of software to detect, identify, and neutralize cyber threats at the early stage of an attack, as well as to effectively counter the growing cyber threat and eliminate its effects on the operating system.