An Intrusion Event Initialized From The Email Social Engineering Attack

碩士 === 國立臺灣科技大學 === 管理研究所 === 102 === This study applies the writing method of Harvard case study. The study states the organization implement the security information system and execute the email social engineering test and training but users are still lack awareness of information security. Hacker...

Full description

Bibliographic Details
Main Authors: Chi Sheng Kao, 高啟聖
Other Authors: Ruey Huei Yeh
Format: Others
Language:zh-TW
Published: 2014
Online Access:http://ndltd.ncl.edu.tw/handle/15946594424458300721
Description
Summary:碩士 === 國立臺灣科技大學 === 管理研究所 === 102 === This study applies the writing method of Harvard case study. The study states the organization implement the security information system and execute the email social engineering test and training but users are still lack awareness of information security. Hackers use an email to invade the internal easily, the case how to solve this problem? How the case balance security and convenience when they manage security information system. This paper contains case content and manual for teachers. This study describe how the user execute the email in detail so the hacker intrude the organization. While the organization implement the security information system, high level managers and staff have different tune, which led to the problem? Why the education and training can’t reach the original goal? The case combine the theory and practice, so the readers can take better action when they encounter similar problems.