Having a good reputation is paramount for most organisations and companies. In fact, having an optimal corporate image allows them to have better transaction relationships with various customers and partners. However, such reputation is hard to build and easy to destroy for all kind of business commercial activities (B2C, B2B, B2B2C, B2G). A misunderstanding during the communication process to the customers, or just a bad communication strategy, can lead to a disaster for the entire company. This is emphasised by the reaction of millions of people on social networks, which can be very detrimental for the corporate image if they react negatively to a certain event. This is called a firestorm. In this paper, I propose a well-organised strategy for firestorm attacks on organisations, also showing how an adversary can leverage them to obtain private information on the attacked firm. Standard business security procedures are not designed to operate against multi-domain attacks; therefore, I will show how it is possible to bypass the classic and advised security procedures by operating different kinds of attack. I also propose a different firestorm attack, targeting a specific business company network in an efficient way. Finally, I present defensive procedures to reduce the negative effect of firestorms on a company.
翻译:拥有良好的声誉对大多数组织和公司来说至关重要。事实上,拥有最佳的公司形象使他们与各种客户和伙伴建立更好的交易关系。然而,这种声誉很难建立,而且容易破坏各种商业活动(B2C、B2B、B2B2C、B2G)。在与客户沟通的过程中,对客户的误解,或者仅仅是不良的通信战略,可能导致整个公司的灾难。这通过数百万人在社交网络上的反应而得到强调,如果他们对某些事件做出消极反应,对公司形象可能非常有害。这被称为一场火灾。我在此文件中提出一个组织周密的打击组织战略,以攻击组织起来,同时表明对手如何利用它们获取被攻击公司的私人信息。标准商业安全程序的设计不是为了对付多面攻击;因此,我将展示如何通过操作不同种类的攻击来绕过经典和忠告的安保程序。我还提议一种不同的火暴攻击,以特定企业网络为对象,以有效的方式针对特定的企业网络。我还提出一个防御性程序,以降低公司火灾风暴的负面效果。