148
2 Computer Viruses, Malicious Logic, and Spyware
2.3.4 Methods of Interaction Between Software Implant
and Intruder
2.3.4.1 Definition of an Intruder
An offender is a person who attempts to perform prohibited operations (actions) due
to a mistake, lack of knowledge or deliberately, with malicious intent (due to lucrative
interest) or without such (for play or fun, for self-affirmation, etc.), and uses various
possibilities, methods, and means for this purpose.
An intruder is an offender who commits an offence due to personal selfish motives.
When developing the intruder model, the following is determined:
• Assumptions about the categories of persons to which the intruder can belong;
• Assumptions about the motives of actions (goals) of the intruder;
• Assumptions about the qualification of the intruder and their technical equipment
(on the methods and means of intrusion);
• Limitations and assumptions about the character of possible actions of the
intruders. Intruders can be internal (staff and system users) or external (unknown
persons).
An inside intruder can be a person from one of the following categories of
employees:
• End users (operators) of the system;
• Technical means maintenance personnel (engineers, technicians);
• Employees of software development and support departments (application and
system programmers);
• Employees of the automated system security service;
• Managers of various levels.
Unknown persons who can be intruders are
• Technical personnel performing maintenance of buildings (cleaners, electricians,
plumbers, and other employees having access to building and rooms where
components of the automated system are installed);
• Clients (representatives of companies, citizens);
• Visitors (invited due to any occasion);
• Representatives of organizations cooperating on the issues of organization support
(energy, water, heat supply, etc.);
• Representatives of competitive organizations (foreign secret services) or persons
acting on their behalf;
• Persons who accidentally or intentionally violate access control (without the
purpose of violating security of the automated system);
• Any persons outside the controlled territory.
Development of modern computer technologies and communication means helps
intruders use various sources to spread hazards and gain information.
2 Computer Viruses, Malicious Logic, and Spyware
2.3.4 Methods of Interaction Between Software Implant
and Intruder
2.3.4.1 Definition of an Intruder
An offender is a person who attempts to perform prohibited operations (actions) due
to a mistake, lack of knowledge or deliberately, with malicious intent (due to lucrative
interest) or without such (for play or fun, for self-affirmation, etc.), and uses various
possibilities, methods, and means for this purpose.
An intruder is an offender who commits an offence due to personal selfish motives.
When developing the intruder model, the following is determined:
• Assumptions about the categories of persons to which the intruder can belong;
• Assumptions about the motives of actions (goals) of the intruder;
• Assumptions about the qualification of the intruder and their technical equipment
(on the methods and means of intrusion);
• Limitations and assumptions about the character of possible actions of the
intruders. Intruders can be internal (staff and system users) or external (unknown
persons).
An inside intruder can be a person from one of the following categories of
employees:
• End users (operators) of the system;
• Technical means maintenance personnel (engineers, technicians);
• Employees of software development and support departments (application and
system programmers);
• Employees of the automated system security service;
• Managers of various levels.
Unknown persons who can be intruders are
• Technical personnel performing maintenance of buildings (cleaners, electricians,
plumbers, and other employees having access to building and rooms where
components of the automated system are installed);
• Clients (representatives of companies, citizens);
• Visitors (invited due to any occasion);
• Representatives of organizations cooperating on the issues of organization support
(energy, water, heat supply, etc.);
• Representatives of competitive organizations (foreign secret services) or persons
acting on their behalf;
• Persons who accidentally or intentionally violate access control (without the
purpose of violating security of the automated system);
• Any persons outside the controlled territory.
Development of modern computer technologies and communication means helps
intruders use various sources to spread hazards and gain information.
