SECURITY ASSESSMENT AND CHOICE OF MESSENGERS USING THE IMECA METHOD

R. Podgornyi, V. Kharchenko

Èlektron. model. 2024, 46(3):73-96

https://doi.org/10.15407/emodel.46.03.073

ABSTRACT

This paper analyzes the potential threats and risks to information security associated with the use of messengers. A comprehensive approach is proposed for assessing messenger security using the IMECA (Intrusion Modes and Effects Criticality Analysis) method. This method enables a well-founded choice of a messenger for secure communication based on a set of supported features that can enhance security and considering personal preferences. The methodology involves expert evaluations to determine the criticality of threats, taking into account their likelihood and the severity of their consequences. Based on the analysis, appropriate countermeasures in the form of messenger features are justified to minimize risks and enhance user security. The practical contribution of the work and the significance of the results obtained for improving cybersecurity are determined.

KEYWORDS

cybersecurity, information security, messengers, IMECA, risks, threats, privacy, countermeasures, method of choosing a secure messenger.

REFERENCES

  1. Nik Unger, Sergej Dechand, Joseph Bonneau, Sascha Fahl, Henning Perl, Ian Goldberg, Matthew Smith. (2015). SoK: Secure Messaging. ISP IEEE Symposium on Security and Privacy. 
    https://doi.org/10.1109/SP.2015.22
  2. Michael Maigwa Martin Kangethe, Elisha Odira Abade. (2022). Secure Contact Agreement Protocol for Messenger Services Through Randomized ID Assignments. Mathematics and Computer Science, 7(2).
    https://doi.org/10.11648/j.mcs.20220701.12
  3. Sangkyun Kim, Choon Seong Leem. (2005). Security of the internet-based instant messenger: Risks and safeguards. Internet Research, 15(1). 
    https://doi.org/10.1108/10662240510577086
  4. Jiho Shin, Jung-Taek Seo. (2022). Verification of Privacy Protection Reliability through Mobile Forensic Approach Regarding iOS-Based Instant Messenger. Sustainability, 14(20).
    https://doi.org/10.3390/su142013281
  5. Soojin Kang, Giyoon Kim, Uk Hur, Jongsung Kim. (2024). Forensic Analysis of wxSQLite3-Encrypted Databases and Its Application. Electronics, 17(7).
    https://doi.org/10.3390/electronics13071325
  6. Iosif Androulidakis, Vyacheslav Kharchenko, Andriy Kovalenko. (2016). IMECA-based Technique for Security Assessment of Private Communications Technology and Training. Information & Security: An International Journal, 35(1), P. 99-120. 
    https://doi.org/10.11610/isij.3505
  7. Babeshko I., Illiashenko O., Kharchenko V., Leontiev K. (2022). Towards Trustworthy Safety Assessment by Providing Expert and Tool-Based XMECA Techniques. Mathematics, 10(13).
    https://doi.org/10.3390/math10132297
  8. Lawrence Abrams. (2021, 3 April). 533 million Facebook users’ phone numbers leaked on hacker forum.Bleeping Computer. URL: https://www.bleepingcomputer.com/ news/security/533-million-facebook-users-phone-numbers-leaked-on-hacker-forum/ (date of access: 16.05.2024).
  9. Clare Duffy. (2022, 23 December). Meta agrees to pay $725 million to settle lawsuit over Cambridge Analytica data leak. CNN Business. URL: https://edition>.cnn.com/ 2022/12/23/tech/meta-cambridge-analytica-settlement/index.html
  10. Richard Lawler, Alex Heath. (2021, 5 October). Facebook is back online after a massive outage that also took down Instagram, WhatsApp, Messenger, and Oculus. The Verge. URL: https://www.theverge.com/2021/10/4/22708989/instagram-facebook-outage-messenger-whatsapp-error
  11. Thomas Ricker. (2019, 14 March). Facebook returns after its worst outage ever. The Verge. URL: https://www.theverge.com/2019/3/14/18265185/facebook-instagram-whatsapp-outage-2019-return-back
  12. Pavel Durov. (2021, 28 December). Opinion about messengers. Telegram. URL: https://t.me/durov/176
  13. Andy Kroll. (2021, 29 November). FBI Document Says the Feds Can Get Your WhatsApp Data — in Real Time. Rolling Stone. URL: https://www.rollingstone.com/politics/politics-features/whatsapp-imessage-facebook-apple-fbi-privacy-1261816/
  14.  Moxie Marlinspike. (2021, 23 December). Opinion about Telegram. Twitter. URL: https://twitter.com/moxie/status/1474067550686236698

Full text: PDF