Published
2023-12-11

How to Cite

Quintero Tamayo, J. F. ., Nuñez Alvarez, Y. S. ., & Cuevas Nuñez, N. A. . (2023). Structuring of computer attacks through playbooks. Publicaciones E Investigación, 17(4). https://doi.org/10.22490/25394088.7498
Metrics
Metrics Loading ...

Structuring of computer attacks through playbooks

DOI: https://doi.org/10.22490/25394088.7498
Section
Artículo original
John Freddy Quintero Tamayo Universidad Nacional Abierta y a distancia
Yenny Stella Nuñez Alvarez Universidad Nacional Abierta y a distancia
Nelly Alexandra Cuevas Nuñez Universidad Nacional Abierta y a distancia

This project proposes the need to establish a knowledge database that provides guidance for responding to cybersecurity events or incidents that may arise within the University or involve any of its stakeholders or target communities. The initiative aims to enhance the University's cybersecurity capabilities and ensure a prompt and effective response to potential cyber threats within its community and beyond. By leveraging collective knowledge, the database will become a valuable resource to protect and safeguard the University's digital environment.

 

The purpose is to strengthen preparedness and response to computer incidents, fostering coordination among involved parties and target communities. Additionally, this project represents a significant step towards establishing a Computer Security Incident Response Team (CSIRT) Center, enabling the University to proactively and efficiently address security challenges in a constantly evolving technological environment. The structuring of a computer attack is crucial within the operation of groups responsible for generating responses to these incidents, which is why the playbooks will include attack descriptions, system impact, tools used for containment, resolution, and recommendations.

The project addresses the automation of playbooks managed by the academic CSIRT of the National Open University and Distance Learning (UNAD) using the GLPI tool.