Skip to main content
QUICK REVIEW

[論文レビュー] Impact of State and State Sponsored Actors on the Cyber Environment and the Future of Critical Infrastructure

Henry Durojaye, Oluwaukola Raji|arXiv (Cornell University)|Dec 13, 2022
Cybersecurity and Cyber Warfare Studies被引用数 4
ひとこと要約

本論文は、国家および国家支援の脅威がサイバー環境および重要なインフラに及ぼす脅威の増大を検討し、2015年のロシアによるウクライナの電力グリッドへのサイバー攻撃を含む実際の事例を分析している。これらの行動は、検知不能で高影響力な攻撃を実施するために高度なリソースを活用しており、国家の安全保障を損なう、経済を不安定化させ、誤情報の拡散を引き起こす。したがって、公的部門と民間部門の連携強化およびサイバーレジリエンスを国家的優先事項として位置づけることが強く要請されている。

ABSTRACT

The purpose of this research paper is to critically explore the impact of state and state-sponsored actors on the cyber environment and the future of critical infrastructure, the majority of these attacks on the cyber environment have focused more on the vulnerability of critical infrastructures, this can be evidenced in the cyber-attack by Russia on December 23rd, 2015 that caused power outages experienced by the Ukrainian power companies which affected many customers in Ukraine [8]. Considering the enormous resources available to state and state-sponsored actors it has become difficult to detect cyber-attacks, even when the attack is discovered, proving that it was carried out by a particular state is not easy as such it is now being commonly exploited by malicious states. The paper examines the effect of the actions of the state and state-sponsored attacks on the cyber environment and critical infrastructures, these adverse effects include; greatly diminished defense capacity of the attacked states, destabilise the micro-economy, disinformation that can effectively sway public opinion in a state [1]. Consequently, being aware of the number of resources available at the disposal of the actors and the enormous negative impacts on the cyber environment and critical infrastructures, the government, agencies, and other professionals will be prepared to protect and prioritise network and security systems as a national issue thus encouraging public-private collaboration.

研究の動機と目的

  • 国家および国家支援の行動がサイバー環境および重要なインフラに与える影響を分析すること。
  • 先進的なリソースとステルス能力が、国家が検知不能なサイバー作業を実施できるようにする仕組みを検討すること。
  • サイバー攻撃の連鎖的影響、特に経済の不安定化および誤情報による世論操作を評価すること。
  • 国家レベルの脅威に応じた、強化された国家サイバー安全保障戦略および公的・民間連携の推進を提唱すること。
  • 国家支援のサイバー攻撃の増加を踏まえ、サイバーレジリエンスを国家的優先事項として位置づけること。

提案手法

  • 国家および国家支援の行動を含むサイバーインシデントに関する文献の批判的レビューを実施する。
  • 2015年12月のロシアによるウクライナの電力グリッドへのサイバー攻撃を含む、実際の事例研究を分析する。
  • 国家行動体が高度で検知困難なサイバー作業を実施するための技術的および戦略的能力を評価する。
  • サイバー攻撃が国家インフラおよび公共の信頼に与える社会的・政治的・経済的影響を検討する。
  • 帰属困難の課題と国際的サイバーセキュリティ政策に与える影響を評価するため、定性的分析を用いる。
  • 制度的連携と戦略的優先順位の見直しを通じて、国家サイバー防衛を強化するフレームワークを提言する。

実験結果

リサーチクエスチョン

  • RQ1国家および国家支援の行動は、どのようにインフラの脆弱性をサイバー作業によって悪用するか?
  • RQ2特定の国が関与しているとされるサイバー攻撃を検知・帰属づける際の主な技術的および戦略的課題は何か?
  • RQ3国家支援のサイバー攻撃が国家の安定に与える広範な社会的・経済的・政治的影響は何か?
  • RQ4公的・民間連携は、国家レベルの脅威に対する国家のサイバー耐性をどのように強化できるか?
  • RQ5国家行動体による誤情報拡散は、技術的混乱を超えて、どのようにサイバー攻撃の影響を拡大させるか?

主な発見

  • 国家および国家支援の行動は、検知困難で検知が難しい高度なサイバー攻撃を実施できる豊富なリソースを有している。
  • 2015年のロシアによるウクライナの電力グリッドへのサイバー攻撃は、インフラが標的とされ、広範な停電と社会的混乱を引き起こす可能性があることを示している。
  • 国家行動体によるサイバー攻撃は、防衛能力の低下を引き起こし、標的的な混乱によってマイクロ経済に不安定化をもたらす。
  • 国家行動体が主導する誤情報キャンペーンは、世論を効果的に操作し、制度への信頼を損なう。
  • 帰属づけの困難さは、検知後でも依然として深刻な課題であり、フェイクアクターの使用や隠蔽技術の活用が原因である。
  • 公的・民間連携の強化およびサイバー耐性を国家セキュリティの優先事項として位置づけることが、国家支援のサイバー脅威を緩和するための不可欠な対応である。

より良い研究を、今すぐ始めましょう

論文の読解から最終レビューまで、研究時間を劇的に削減しましょう。

クレジットカード登録不要

このレビューはAIが作成し、人間の編集者が確認しました。