{"title":"中小企业网络安全与道德黑客","authors":"H. Berger, Andrew Jones","doi":"10.1145/2925995.2926016","DOIUrl":null,"url":null,"abstract":"Literature posits that 30,000 SME websites are hacked daily. Thus it is acknowledged that web-based tools are essential to prevent cyber criminals hacking into online networks to comprise their services and gain access to confidential data for improper purposes. We consider the concept of Ethical Hacking where authorized hackers attempt to infiltrate a business's systems/networks on behalf of the owners with the intention of finding security weaknesses. However such security measures are costly and many SMEs lack the knowledge and resources to accomplish this. Utilizing an SME case study we provide insights into how Ethical Hacking, in the form of Penetration Testing using free open source tools, can be used by SMEs to protect their network's services/operations. Using Nmap, Google Hacking, Nessus and Brutus we uncovered 232 network vulnerabilities. Thus measures were put in to place to resolve these vulnerabilities and prevent the case study's sensitive data from future cyber threats.","PeriodicalId":159180,"journal":{"name":"Proceedings of the The 11th International Knowledge Management in Organizations Conference on The changing face of Knowledge Management Impacting Society","volume":"1 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2016-07-25","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"9","resultStr":"{\"title\":\"Cyber Security & Ethical Hacking For SMEs\",\"authors\":\"H. Berger, Andrew Jones\",\"doi\":\"10.1145/2925995.2926016\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"Literature posits that 30,000 SME websites are hacked daily. Thus it is acknowledged that web-based tools are essential to prevent cyber criminals hacking into online networks to comprise their services and gain access to confidential data for improper purposes. We consider the concept of Ethical Hacking where authorized hackers attempt to infiltrate a business's systems/networks on behalf of the owners with the intention of finding security weaknesses. However such security measures are costly and many SMEs lack the knowledge and resources to accomplish this. Utilizing an SME case study we provide insights into how Ethical Hacking, in the form of Penetration Testing using free open source tools, can be used by SMEs to protect their network's services/operations. Using Nmap, Google Hacking, Nessus and Brutus we uncovered 232 network vulnerabilities. Thus measures were put in to place to resolve these vulnerabilities and prevent the case study's sensitive data from future cyber threats.\",\"PeriodicalId\":159180,\"journal\":{\"name\":\"Proceedings of the The 11th International Knowledge Management in Organizations Conference on The changing face of Knowledge Management Impacting Society\",\"volume\":\"1 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2016-07-25\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"9\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"Proceedings of the The 11th International Knowledge Management in Organizations Conference on The changing face of Knowledge Management Impacting Society\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1145/2925995.2926016\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"Proceedings of the The 11th International Knowledge Management in Organizations Conference on The changing face of Knowledge Management Impacting Society","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1145/2925995.2926016","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
Literature posits that 30,000 SME websites are hacked daily. Thus it is acknowledged that web-based tools are essential to prevent cyber criminals hacking into online networks to comprise their services and gain access to confidential data for improper purposes. We consider the concept of Ethical Hacking where authorized hackers attempt to infiltrate a business's systems/networks on behalf of the owners with the intention of finding security weaknesses. However such security measures are costly and many SMEs lack the knowledge and resources to accomplish this. Utilizing an SME case study we provide insights into how Ethical Hacking, in the form of Penetration Testing using free open source tools, can be used by SMEs to protect their network's services/operations. Using Nmap, Google Hacking, Nessus and Brutus we uncovered 232 network vulnerabilities. Thus measures were put in to place to resolve these vulnerabilities and prevent the case study's sensitive data from future cyber threats.