{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,15]],"date-time":"2026-07-15T06:49:20Z","timestamp":1784098160224,"version":"3.55.0"},"reference-count":25,"publisher":"Springer Fachmedien Wiesbaden GmbH","issue":"3","license":[{"start":{"date-parts":[[2020,4,16]],"date-time":"2020-04-16T00:00:00Z","timestamp":1586995200000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0"},{"start":{"date-parts":[[2020,4,16]],"date-time":"2020-04-16T00:00:00Z","timestamp":1586995200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0"}],"funder":[{"name":"Hochschule f\u00fcr angewandte Wissenschaften W\u00fcrzburg-Schweinfurt"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["HMD"],"published-print":{"date-parts":[[2020,6]]},"abstract":"<jats:title>Zusammenfassung<\/jats:title><jats:p>Eine gro\u00dfe Bedrohung f\u00fcr die Informationssicherheit geht von Mitarbeitern aus, die absichtlich der eigenen Organisation schaden wollen. Mitarbeiter besitzen Zugriffsrechte f\u00fcr sensible Informationen und genie\u00dfen das Vertrauen des Unternehmens. Werden sie allerdings aufgrund pers\u00f6nlicher Motive oder \u00e4u\u00dferer Umst\u00e4nde zu Whistleblowern, Spionen, Betr\u00fcgern, Saboteuren, Malicious Enablern oder Datendieben, k\u00f6nnen sie gro\u00dfen Schaden anrichten. Dieser Artikel untersucht die Motive sogenannter Malicious Insider und stellt die sechs verschiedenen Typen anhand von realen Beispielen der j\u00fcngeren Vergangenheit vor. Er zeigt, welche erkennenden, pr\u00e4ventiven und reaktiven Ma\u00dfnahmen Organisationen ergreifen sollten, um die Risiken durch Attacken von b\u00f6swilligen Insidern zu minimieren. Der Fokus liegt auf den erkennenden Ma\u00dfnahmen. Durch fr\u00fchzeitiges Eingreifen werden Mitarbeiter gar nicht erst zu Malicious Insidern. Eine Kombination aus pers\u00f6nlicher Veranlagung (z.\u202fB. Introversion, Gier, Kritikunf\u00e4higkeit), Stressfaktoren (z.\u202fB. Frustration, Unzufriedenheit) und auff\u00e4lligem Verhalten (z.\u202fB. au\u00dfergew\u00f6hnliche Arbeitszeiten oder Reiseziele) weist h\u00e4ufig auf potentielle T\u00e4ter hin.<\/jats:p>","DOI":"10.1365\/s40702-020-00616-9","type":"journal-article","created":{"date-parts":[[2020,4,16]],"date-time":"2020-04-16T20:02:41Z","timestamp":1587067361000},"page":"613-627","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":2,"title":["Insider Threats \u2013 Der Feind in den eigenen Reihen","Insider Threats \u2013 Hidden Enemies"],"prefix":"10.1365","volume":"57","author":[{"given":"Kristin","family":"Weber","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Andreas E.","family":"Sch\u00fctz","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Tobias","family":"Fertig","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"93","published-online":{"date-parts":[[2020,4,16]]},"reference":[{"key":"616_CR23","unstructured":"Attorney\u2019s Office US (2018) Former it employee of transcontinental railroad sentenced to prison for damaging ex-employer\u2019s computer network. https:\/\/www.justice.gov\/usao-mn\/pr\/former-it-employee-transcontinental-railroad-sentenced-prison-damaging-ex-employer-s. Zugegriffen: 12. Jan. 2020"},{"key":"616_CR2","unstructured":"Becker KB, Das Gupta O, Schulte von Drach MC (2014) Agenten, Informanten, Verr\u00e4ter \u2013 Ein historischer \u00dcberblick von Mata Hari bis zu G\u00fcnter Guillaume. In: S\u00fcddeutsche Zeitung. https:\/\/www.sueddeutsche.de\/politik\/spione-verraeter-1.2040631. Zugegriffen: 12. Jan. 2020"},{"key":"616_CR3","unstructured":"Biography.com Editors (2019) Edward Snowden Biography. In: The Biography.com website. https:\/\/www.biography.com\/activist\/edward-snowden. Zugegriffen: 12. Jan. 2020"},{"key":"616_CR4","volume-title":"Best practices: mitigating insider threats\u2014defend your organization against the threats insiders pose","author":"J Blankenship","year":"2019","unstructured":"Blankenship\u00a0J, O\u2019Malley\u00a0C (2019) Best practices: mitigating insider threats\u2014defend your organization against the threats insiders pose. Forrester Research, Cambridge"},{"key":"616_CR5","unstructured":"Brandt M (2016) Cyberattacken meist Insider-Jobs. In: statista. https:\/\/de.statista.com\/infografik\/5001\/verursacher-von-cyberattacken-auf-unternehmen\/. Zugegriffen: 12. Jan. 2020"},{"key":"616_CR6","unstructured":"Burgess C (2017) Insider wreaks havoc on company\u2014after he resigns. In: CSO. https:\/\/www.csoonline.com\/article\/3206626\/insider-wreaks-havoc-on-companyafter-he-resigns.html. Zugegriffen: 12. Jan. 2020"},{"key":"616_CR7","volume-title":"The CERT guide to insider threats: how to prevent, detect, and respond to information technology crimes (theft, sabotage, fraud)","author":"D Cappelli","year":"2012","unstructured":"Cappelli\u00a0D, Moore\u00a0A, Trzeciak\u00a0R (2012) The CERT guide to insider threats: how to prevent, detect, and respond to information technology crimes (theft, sabotage, fraud). Addison-Wesley, Upper Saddle River"},{"key":"616_CR12","volume-title":"User security in 2015: the future of addressing insider threat","author":"IS Decisions","year":"2015","unstructured":"Decisions\u00a0IS (2015) User security in 2015: the future of addressing insider threat. IS\u00a0Decisions. https:\/\/cdn.isdecisions.com\/pdf\/future-insider-threat-user-security.pdf. Zugegriffen: 19.02.2020"},{"key":"616_CR8","unstructured":"Greenwald G, MacAskill E, Poitras L (2013) Edward Snowden: the whistleblower behind the NSA surveillance revelations. In: The Guardian. https:\/\/www.theguardian.com\/world\/2013\/jun\/09\/edward-snowden-nsa-whistleblower-surveillance?CMP=twt_gu. Zugegriffen: 12. Jan. 2020"},{"key":"616_CR9","unstructured":"Harris M (2017) By Firing Anthony Levandowski, Uber Got Otto on the Cheap. In: IEEE Spektrum. https:\/\/spectrum.ieee.org\/cars-that-think\/transportation\/self-driving\/turns-out-uber-got-otto-on-the-cheap. Zugegriffen: 12. Jan. 2020"},{"key":"616_CR10","first-page":"4","volume":"2","author":"J Hunker","year":"2011","unstructured":"Hunker\u00a0J, Probst\u00a0CW (2011) Insiders and insider threats-an overview of definitions and mitigation techniques. J\u00a0Wirel Mob Networks Ubiquitous Comput Dependable Appl 2:4\u201327","journal-title":"J Wirel Mob Networks Ubiquitous Comput Dependable Appl"},{"key":"616_CR11","volume-title":"Stopping the attackers you trust","author":"Illusive Networks","year":"2019","unstructured":"Illusive Networks (2019) Stopping the attackers you trust. Illusive Networks. https:\/\/www.infosecurityeurope.com\/__novadocuments\/544221?v=636820416740800000. Zugegriffen: 13.01.2020"},{"key":"616_CR1","unstructured":"Kaspersky Lab AO (2020) Recognizing different types of insiders. In: encyclopedia by Kaspersky. https:\/\/encyclopedia.kaspersky.com\/knowledge\/recognizing-different-types-of-insiders\/. Zugegriffen: 12. Jan. 2020"},{"key":"616_CR13","volume-title":"Insider threat detection study","author":"M Kont","year":"2018","unstructured":"Kont\u00a0M, Pihelgas\u00a0M, Wojtkowiak\u00a0J et\u00a0al (2018) Insider threat detection study. CCDCOE, Tallinn"},{"key":"616_CR14","unstructured":"Mac R, Solomon B, Ohnsmann A (2017) Meet the former Google engineer who allegedly Stole secrets for Uber. https:\/\/www.forbes.com\/sites\/briansolomon\/2017\/02\/23\/meet-the-former-google-engineer-who-allegedly-stole-secrets-for-uber-anthony-levandowski\/#a8b6ece5c5ea. Zugegriffen: 12. Jan. 2020"},{"key":"616_CR15","unstructured":"Mail Foreign Service (2009) How boeing engineer spied for Chinese for 30 years... and stole secret space shuttle designs. https:\/\/www.dailymail.co.uk\/news\/article-1200339\/How-Boeing-engineer-spied-Chinese-30-years--stole-secrets-space-shuttle.html. Zugegriffen: 12. Jan. 2020"},{"key":"616_CR16","volume-title":"The state of Cybersecurity and digital trust 2016","author":"F McClimans","year":"2016","unstructured":"McClimans\u00a0F, Fersht\u00a0P, Snowdon\u00a0J et\u00a0al (2016) The state of Cybersecurity and digital trust 2016. Accenture and HfS Research Ltd. https:\/\/www.accenture.com\/t20160704T014005Z__w__\/us-en\/_acnmedia\/PDF-23\/Accenture-State-Cybersecurity-and-Digital-Trust-2016-Report-June.pdf#zoom=50. Zugegriffen: 12.01.2020"},{"key":"616_CR17","first-page":"1","volume-title":"Proceedings of the 7th ACM CCS international workshop on managing insider security threats","author":"AS McGough","year":"2015","unstructured":"McGough\u00a0AS, Alwis\u00a0S, Wall\u00a0D et al (2015) Insider threats: identifying anomalous human behaviour in heterogeneous systems using beneficial intelligent software (Ben-ware). In: Proceedings of the 7th ACM CCS international workshop on managing insider security threats MIST \u201915.. ACM Press, Denver, S 1\u201312"},{"key":"616_CR18","unstructured":"Murdock J (2017) Ex-employee faces 7 years in prison after hacking into security firm and deleting client data. https:\/\/www.ibtimes.co.uk\/ex-employee-faces-7-years-prison-after-hacking-into-security-firm-deleting-client-data-1628776. Zugegriffen: 12. Jan. 2020"},{"key":"616_CR19","volume-title":"Remediating the insider threat","author":"I Murphy","year":"2019","unstructured":"Murphy\u00a0I (2019) Remediating the insider threat. Enterprise Times. https:\/\/www.infosecurityeurope.com\/__novadocuments\/589475?v=636923174749130000. Zugegriffen: 13.01.2020"},{"key":"616_CR20","volume-title":"Combating the insider threat","author":"NCCIC","year":"2014","unstructured":"NCCIC (2014) Combating the insider threat. https:\/\/www.us-cert.gov\/sites\/default\/files\/publications\/Combating%20the%20Insider%20Threat_0.pdf. Zugegriffen: 21.01.2020"},{"key":"616_CR21","doi-asserted-by":"publisher","DOI":"10.2172\/1452870","volume-title":"Spy the lie\u2014detecting malicious insiders","author":"C Noonan","year":"2018","unstructured":"Noonan\u00a0C (2018) Spy the lie\u2014detecting malicious insiders. Pacific Northwest National Laboratory, Richland"},{"key":"616_CR22","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1007\/978-1-4419-7133-3","volume-title":"Insider threats in Cyber security","author":"CW Probst","year":"2010","unstructured":"Probst\u00a0CW, Hunker\u00a0J, Gollmann\u00a0D, Bishop\u00a0M (2010) Aspects of insider threats. In: Probst\u00a0CW, Hunker\u00a0J, Gollmann\u00a0D, Bishop\u00a0M (Hrsg) Insider threats in Cyber security. Springer, Boston, S\u00a01\u201315"},{"key":"616_CR24","doi-asserted-by":"publisher","first-page":"69","DOI":"10.1007\/s11623-018-0896-2","volume":"42","author":"M Waschetzki","year":"2018","unstructured":"Waschetzki\u00a0M, Steinebach\u00a0M (2018) Digitale Wasserzeichen in der Kriminalistik. Datenschutz Datensicherheit 42:69\u201373. https:\/\/doi.org\/10.1007\/s11623-018-0896-2","journal-title":"Datenschutz Datensicherheit"},{"key":"616_CR25","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-658-26258-7","volume-title":"Grundlagen und Anwendung von Information Security Awareness: Mitarbeiter zielgerichtet f\u00fcr Informationssicherheit sensibilisieren","author":"K Weber","year":"2019","unstructured":"Weber\u00a0K, Sch\u00fctz\u00a0AE, Fertig\u00a0T (2019) Grundlagen und Anwendung von Information Security Awareness: Mitarbeiter zielgerichtet f\u00fcr Informationssicherheit sensibilisieren. Springer, Berlin Heidelberg"}],"container-title":["HMD Praxis der Wirtschaftsinformatik"],"original-title":[],"language":"de","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1365\/s40702-020-00616-9.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/article\/10.1365\/s40702-020-00616-9\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1365\/s40702-020-00616-9.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2021,4,15]],"date-time":"2021-04-15T23:07:17Z","timestamp":1618528037000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1365\/s40702-020-00616-9"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2020,4,16]]},"references-count":25,"journal-issue":{"issue":"3","published-print":{"date-parts":[[2020,6]]}},"alternative-id":["616"],"URL":"https:\/\/doi.org\/10.1365\/s40702-020-00616-9","relation":{},"ISSN":["1436-3011","2198-2775"],"issn-type":[{"value":"1436-3011","type":"print"},{"value":"2198-2775","type":"electronic"}],"subject":[],"published":{"date-parts":[[2020,4,16]]},"assertion":[{"value":"21 February 2020","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"24 March 2020","order":2,"name":"revised","label":"Revised","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"4 April 2020","order":3,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"16 April 2020","order":4,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}}]}}