IDS mailing list archives

Intrusion Risk Assessment


From: <Robert_Huber () bankone com>
Date: Mon, 6 Jan 2003 12:54:02 -0500

Anyone know of any IDS risk assessment matrixes out there?  I'm looking for something like the following:

Rating                          Severity
1  No Damage                    a.      Not possible to exploit (or)
                                b.      No damage (or)
                                c.      Hoax
                                 
2 Harassment                    a.      Possible damage, unconfirmed (or)
                                b.      Temporarily shuts down services and/or temporarily prevents access to 
information

3 Minor Damage                  a.      Short-term impact (or)
                                b.      Exploit allows access to view files (or)
                                c.      Minimal effort required to recover

4 Moderate Damage               a.      The exploit is easy to perform (or)
                                b.      Important systems can be effected with administrative compromise (or)
                                c.      Exploit allows full access to files (or)
                                d.      Long-term effects, significant effort may be required to recover

5 Heavy Damage          a.      The exploit is easy to perform (and)
                                b.      An exploit will cause severe damage to multiple computers (and/or)
                                c.      Requires reinstallation or recovery from backup


Robert Huber
Bank One Information Security
Phone: 302-282-2234
Pager: 888-646-3502



**********************************************************************
This transmission may contain information that is privileged, confidential and/or exempt from disclosure under 
applicable law. If you are not the intended recipient, you are hereby notified that any disclosure, copying, 
distribution, or use of the information contained herein (including any reliance thereon) is STRICTLY PROHIBITED. If 
you received this transmission in error, please immediately contact the sender and destroy the material in its 
entirety, whether in electronic or hard copy format. Thank you
**********************************************************************


Current thread: