Research on Security Incident Taxonomy in Computer Incident Response Service

WANG Chang-ji,DUAN Hai-xin,WU Jian-ping
DOI: https://doi.org/10.3321/j.issn:0529-6579.2005.z1.014
2005-01-01
Abstract:Security incidents are becoming more common and more serious with the flying development of Internet. There is an increasing need for taxonomy of incident to facilitate for incident reporting, incident handling, incident statistic, incident analysis and collaboration among Computer Security Incident Response Teams (CSIRT). The previous researches on the taxonomy of computer security incident are summarized firstly, the description method and taxonomy of security incident are then presented based on the formal model of network security and security incident.And two examples using the proposed taxonomy of security incident are given in the end.
What problem does this paper attempt to address?