Key points are not available for this paper at this time.
Network cybercrime is a serious threat to information security in today's digital world. This paper analyses the characteristics of network cybercrime and proposes a method for analyzing it. Features of the method include the construction of a digital trace of the attack using an oriented graph, as well as a digital profile of the perpetrator. This is done by recording the state of the cyber-physical system in normal mode and identifying the moment of detection of the attack, and by collecting and analysing data from event logs to identify the events leading up to the attack. The construction of an attack graph allows the identification of typical attack scenarios and attacker characteristics. The proposed method makes it possible to increase the efficiency of detecting and combating network cybercrime, reduce incident response time and improve the security level of information systems.
Fatkieva et al. (Wed,) studied this question.