Skip to main content
Top
Published in: International Journal of Information Security 1/2023

21-10-2022 | Regular contribution

Modeling reporting delays in cyber incidents: an industry-level comparison

Authors: Seema Sangari, Eric Dallal, Michael Whitman

Published in: International Journal of Information Security | Issue 1/2023

Log in

Activate our intelligent search to find suitable subject content or patents.

search-config
loading …

Abstract

Cyber incidents often take time to be detected and even further time to be reported. Due to reporting delays, the reported proportion of recent incidents is smaller than for older incidents, resulting in the false impression of a diminishing frequency of cyber incident counts in recent years when examining databases of (publicly) reported cyber incidents. Obtaining an accurate view of the true trend therefore requires correcting for reporting delays. Complicating matters is the fact that the distribution of reporting delays differs from industry to industry. This paper investigates four distinct industries of US companies: Finance and Insurance, Educational Services, Health Care and Social Assistance, and Public Administration. This paper presents the correction for reporting delays in USA and by industry, with specific emphasis on the given industries. The research finds that there are longer reporting delays in Finance and Insurance, compared to the other three industries examined.

Dont have a licence yet? Then find out more about our products and how to get one now:

Springer Professional "Technik"

Online-Abonnement

Mit Springer Professional "Technik" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 390 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Maschinenbau + Werkstoffe




 

Jetzt Wissensvorsprung sichern!

Springer Professional "Wirtschaft+Technik"

Online-Abonnement

Mit Springer Professional "Wirtschaft+Technik" erhalten Sie Zugriff auf:

  • über 102.000 Bücher
  • über 537 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Maschinenbau + Werkstoffe
  • Versicherung + Risiko

Jetzt Wissensvorsprung sichern!

Springer Professional "Wirtschaft"

Online-Abonnement

Mit Springer Professional "Wirtschaft" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 340 Zeitschriften

aus folgenden Fachgebieten:

  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Versicherung + Risiko




Jetzt Wissensvorsprung sichern!

Footnotes
1
This corresponds to incidents that occurred from August 2014 through July 2016
 
2
\(1 \, Year = 360 \,Days\), computed based on 30 days per month in a year
 
3
30 days per month convention applied to allow uniform discretization for delay and age histograms
 
Literature
5.
go back to reference Cheng, F.F., Ford, W.L.: Adjustment of aids surveillance data for reporting delay to the editor (1991) Cheng, F.F., Ford, W.L.: Adjustment of aids surveillance data for reporting delay to the editor (1991)
6.
go back to reference Downs, A.M., Ancelle, R.A., Jager, H.J., Brunet, J.B.: AIDS in Europe: current trends and short-term predictions estimated from surveillance data, January 1981-June 1986. AIDS 1(1), 53–57 (1987) Downs, A.M., Ancelle, R.A., Jager, H.J., Brunet, J.B.: AIDS in Europe: current trends and short-term predictions estimated from surveillance data, January 1981-June 1986. AIDS 1(1), 53–57 (1987)
7.
go back to reference Downs, A.M., Ancelle, R., Jager, J.C., Heisterkamp, S.H., Van Druten, J.A., Ruitenberg, E.J., Brunet, J.B.: The statistical estimation, from routine surveillance data, of past, present and future trends in AIDS incidence in Europe. In: Jager, J.C., Ruitenberg, E.J. (eds.) Statistical Analysis and Mathematical Modelling of AIDS, pp. 1–16. Oxford University Press, Oxford (1988) Downs, A.M., Ancelle, R., Jager, J.C., Heisterkamp, S.H., Van Druten, J.A., Ruitenberg, E.J., Brunet, J.B.: The statistical estimation, from routine surveillance data, of past, present and future trends in AIDS incidence in Europe. In: Jager, J.C., Ruitenberg, E.J. (eds.) Statistical Analysis and Mathematical Modelling of AIDS, pp. 1–16. Oxford University Press, Oxford (1988)
11.
go back to reference Hansen, N.: The CMA evolution strategy: a comparing review. In: Lozano, J.A., Larranaga, P., Inza, I., Bengoetxea, E. (eds.) Towards a New Evolutionary Computation. Advances on Estimation of Distribution Algorithms, vol. 192, pp. 75–102. Springer, Berlin (2006)CrossRef Hansen, N.: The CMA evolution strategy: a comparing review. In: Lozano, J.A., Larranaga, P., Inza, I., Bengoetxea, E. (eds.) Towards a New Evolutionary Computation. Advances on Estimation of Distribution Algorithms, vol. 192, pp. 75–102. Springer, Berlin (2006)CrossRef
16.
go back to reference Heisterkamp, S.H., Jager, J.C., Downs, A.M., Van Druten, J.A.: The use of Genstat in the estimation of expected numbers of AIDS cases adjusted for reporting delays. In: Fifth Genstat Conference, pp. 4–18 (1988) Heisterkamp, S.H., Jager, J.C., Downs, A.M., Van Druten, J.A.: The use of Genstat in the estimation of expected numbers of AIDS cases adjusted for reporting delays. In: Fifth Genstat Conference, pp. 4–18 (1988)
17.
go back to reference Heisterkamp, S.H., Jager, J.C., Downs, A.M., Van Druten, J.A., Ruitenberg, E.J.: Statistical estimation of AIDS incidence from surveillance data and the link with modelling of trends. In: Statistical Analysis and Mathematical Modelling of AIDS, pp. 17–25. Oxford University Press, Oxford (1988) Heisterkamp, S.H., Jager, J.C., Downs, A.M., Van Druten, J.A., Ruitenberg, E.J.: Statistical estimation of AIDS incidence from surveillance data and the link with modelling of trends. In: Statistical Analysis and Mathematical Modelling of AIDS, pp. 17–25. Oxford University Press, Oxford (1988)
19.
go back to reference Kalbfleisch, J.D., Lawless, J.F.: Regression models for right truncated data with applications to aids incubation times and reporting lags. Stat. Sin. 1(1), 19–32 (1991)MATH Kalbfleisch, J.D., Lawless, J.F.: Regression models for right truncated data with applications to aids incubation times and reporting lags. Stat. Sin. 1(1), 19–32 (1991)MATH
21.
go back to reference Morgan, W.M., Curran, J.W.: Acquired immunodeficiency syndrome: current and future trends. Public Health Rep. 101(5), 459–465 (1986) Morgan, W.M., Curran, J.W.: Acquired immunodeficiency syndrome: current and future trends. Public Health Rep. 101(5), 459–465 (1986)
22.
go back to reference Rosenberg, P.S.: A simple correction of AIDS surveillance data for reporting delays. J. Acquir. Immune Defic. Syndr. 3(1), 49–54 (1990) Rosenberg, P.S.: A simple correction of AIDS surveillance data for reporting delays. J. Acquir. Immune Defic. Syndr. 3(1), 49–54 (1990)
23.
go back to reference Rosinska, M., Pantazis, N., Janiec, J., Pharris, A., Amato-Gauci, A.J., Quinten, C., Schmid, D., Sasse, A., van Beckhoven, D., Varleva, T., Blazic, T.N., Hadjihannas, L., Koliou, M., Maly, M., Cowan, S., Rüütel, K., Liitsola, K., Salminen, M., Cazein, F., Pillonel, J., Lot, F., Gunsenheimer-Bartmeyer, B., Nikolopoulos, G., Paraskeva, D., Dudas, M., Briem, H., Sigmundsdottir, G., Igoe, D., O’Donnell, K., O’Flanagan, D., Suligoi, B., Konova, Š, Erne, S., Čaplinskienė, I., Schmit, A.F.J.C., Melillo, J.M., Melillo, T., de Coul, E.O., van Sighem, A., Blystad, H., Rosinska, M., Aldir, I., Martins, H.C., Mardarescu, M., Truska, P., Klavs, I., Diaz, A., Axelsson, M., Delpech, V.: Potential adjustment methodology for missing data and reporting delay in the HIV surveillance system, European Union/European Economic Area, 2015. Eurosurveillance (2018). https://doi.org/10.2807/1560-7917.ES.2018.23.23.1700359CrossRef Rosinska, M., Pantazis, N., Janiec, J., Pharris, A., Amato-Gauci, A.J., Quinten, C., Schmid, D., Sasse, A., van Beckhoven, D., Varleva, T., Blazic, T.N., Hadjihannas, L., Koliou, M., Maly, M., Cowan, S., Rüütel, K., Liitsola, K., Salminen, M., Cazein, F., Pillonel, J., Lot, F., Gunsenheimer-Bartmeyer, B., Nikolopoulos, G., Paraskeva, D., Dudas, M., Briem, H., Sigmundsdottir, G., Igoe, D., O’Donnell, K., O’Flanagan, D., Suligoi, B., Konova, Š, Erne, S., Čaplinskienė, I., Schmit, A.F.J.C., Melillo, J.M., Melillo, T., de Coul, E.O., van Sighem, A., Blystad, H., Rosinska, M., Aldir, I., Martins, H.C., Mardarescu, M., Truska, P., Klavs, I., Diaz, A., Axelsson, M., Delpech, V.: Potential adjustment methodology for missing data and reporting delay in the HIV surveillance system, European Union/European Economic Area, 2015. Eurosurveillance (2018). https://​doi.​org/​10.​2807/​1560-7917.​ES.​2018.​23.​23.​1700359CrossRef
24.
go back to reference Sangari, S., Dallal, E.: Correcting for reporting delays in cyber incidents. In: JSM Proceedings, Risk Analysis Section, pp. 721–735. Alexandria, VA, American Statistical Association (2021) Sangari, S., Dallal, E.: Correcting for reporting delays in cyber incidents. In: JSM Proceedings, Risk Analysis Section, pp. 721–735. Alexandria, VA, American Statistical Association (2021)
26.
go back to reference Weinberger, D.M., Chen, J., Cohen, T., Crawford, F.W., Mostashari, F., Olson, D., Pitzer, V.E., Reich, N.G., Russi, M., Simonsen, L., Watkins, A., Viboud, C.: Estimation of excess deaths associated with the COVID-19 pandemic in the United States, March to May 2020. JAMA Intern. Med. 180(10), 1336–1344 (2020). https://doi.org/10.1001/jamainternmed.2020.3391CrossRef Weinberger, D.M., Chen, J., Cohen, T., Crawford, F.W., Mostashari, F., Olson, D., Pitzer, V.E., Reich, N.G., Russi, M., Simonsen, L., Watkins, A., Viboud, C.: Estimation of excess deaths associated with the COVID-19 pandemic in the United States, March to May 2020. JAMA Intern. Med. 180(10), 1336–1344 (2020). https://​doi.​org/​10.​1001/​jamainternmed.​2020.​3391CrossRef
Metadata
Title
Modeling reporting delays in cyber incidents: an industry-level comparison
Authors
Seema Sangari
Eric Dallal
Michael Whitman
Publication date
21-10-2022
Publisher
Springer Berlin Heidelberg
Published in
International Journal of Information Security / Issue 1/2023
Print ISSN: 1615-5262
Electronic ISSN: 1615-5270
DOI
https://doi.org/10.1007/s10207-022-00623-5

Other articles of this Issue 1/2023

International Journal of Information Security 1/2023 Go to the issue

Premium Partner