22
1 Information Weapon: Concepts, Means, Methods …
1.3 Definition and Classification of Information Technology
Impacts
Information technology impact (ITI) is the main adverse factor of an information
weapon, concerning an information resource, an information system, or means of
receiving, transmitting, processing, storing, and reproducing information as it is in
order to cause specified structural and/or functional changes.
ITI objects—information, its properties related to information security, information technology systems (communication and control systems, telecommunication
systems, radioelectronic equipment, computer networks, etc.), hardware, computer
systems and networks, as well as other infrastructure ensuring high-tech way of life,
smooth functioning of the system of government, control of weapons, and military
equipment.
A detailed classification of known ITIs is given in Fig. 1.4, proposed by the authors
of the fundamental work [5]. The following types of information technology impacts
are distinguished:
– Single impacts;
– Group impacts.
ITIs are also classified by damaging properties [7, 13]:
– High-precision impacts (for instance, on a certain resource in a computer
network);
– Complex impacts (for instance, on the entire information and telecommunications
infrastructure).
According to the type of impact on the information or information resource:
– Passive (interception, unauthorized access);
– Active (damaging, manipulating, blocking).
Passive ITIs do not directly affect the operation of the information system under
attack, but may violate its security policy. It is the absence of a direct impact on the
functioning of the information system that makes passive impacts very difficult to
detect. An example of a passive impact (widely used by intelligence services) is a
survey of the parameters of information systems.
Active impact directly concerns the functioning of the information system under
attack (system configuration change, malfunction, etc.) and violates its security
policy. An important feature of active impact, as opposed to the passive one, is
the fundamental possibility of its detection. As a result of its implementation, certain
destructive changes occur in the information system and can be quickly detected.
By purpose of use, the following information effects are distinguished:
– Defensive;
– Offensive;
– Protection;
– Combined.
1 Information Weapon: Concepts, Means, Methods …
1.3 Definition and Classification of Information Technology
Impacts
Information technology impact (ITI) is the main adverse factor of an information
weapon, concerning an information resource, an information system, or means of
receiving, transmitting, processing, storing, and reproducing information as it is in
order to cause specified structural and/or functional changes.
ITI objects—information, its properties related to information security, information technology systems (communication and control systems, telecommunication
systems, radioelectronic equipment, computer networks, etc.), hardware, computer
systems and networks, as well as other infrastructure ensuring high-tech way of life,
smooth functioning of the system of government, control of weapons, and military
equipment.
A detailed classification of known ITIs is given in Fig. 1.4, proposed by the authors
of the fundamental work [5]. The following types of information technology impacts
are distinguished:
– Single impacts;
– Group impacts.
ITIs are also classified by damaging properties [7, 13]:
– High-precision impacts (for instance, on a certain resource in a computer
network);
– Complex impacts (for instance, on the entire information and telecommunications
infrastructure).
According to the type of impact on the information or information resource:
– Passive (interception, unauthorized access);
– Active (damaging, manipulating, blocking).
Passive ITIs do not directly affect the operation of the information system under
attack, but may violate its security policy. It is the absence of a direct impact on the
functioning of the information system that makes passive impacts very difficult to
detect. An example of a passive impact (widely used by intelligence services) is a
survey of the parameters of information systems.
Active impact directly concerns the functioning of the information system under
attack (system configuration change, malfunction, etc.) and violates its security
policy. An important feature of active impact, as opposed to the passive one, is
the fundamental possibility of its detection. As a result of its implementation, certain
destructive changes occur in the information system and can be quickly detected.
By purpose of use, the following information effects are distinguished:
– Defensive;
– Offensive;
– Protection;
– Combined.
