Cyber risk is a major challenge in the digital economy, requiring appropriate statistical methodologies for accurate assessment and evaluation. This work illustrates different statistical approaches to model cyber risk, addressing multiple aspects of the problem. Our analysis is structured around various methodological frameworks. First, we employ ordered response models to evaluate the severity of cyber attacks, expressed on an ordinal scale, as a function of the characteristics of the attacks. Second, we employ network-based models to assess vulnerabilities among cyber attack victims. Finally, we introduce a distributional inference approach based on Wasserstein propagation to estimate cyber risk at the country level, particularly for regions with limited data availability. The proposed methodologies are applied to real-world data on cyber attacks that have occurred worldwide over the past decades. This research provides valuable information for policy makers and industry stakeholders to improve cybersecurity strategies.

Cyber Risk: Statistical Approaches and Insights / C. Tarantola, S. Facchinetti, S.A. Osmetti, A. Spelta (ITALIAN STATISTICAL SOCIETY SERIES ON ADVANCES IN STATISTICS). - In: Statistics for Innovation I : SIS 2025, Short Papers, Plenary, Specialized, and Solicited Sessions / [a cura di] E. di Bella, V. Gioia, C. Lagazio, S. Zaccarin. - [s.l] : Pearson, 2025. - ISBN 978-3-031-96736-8. - pp. 67-72 (( SIS2025-Statistics for Innovation Genova 2025 [10.1007/978-3-031-96736-8_8].

Cyber Risk: Statistical Approaches and Insights

C. Tarantola
;
S. Facchinetti;
2025

Abstract

Cyber risk is a major challenge in the digital economy, requiring appropriate statistical methodologies for accurate assessment and evaluation. This work illustrates different statistical approaches to model cyber risk, addressing multiple aspects of the problem. Our analysis is structured around various methodological frameworks. First, we employ ordered response models to evaluate the severity of cyber attacks, expressed on an ordinal scale, as a function of the characteristics of the attacks. Second, we employ network-based models to assess vulnerabilities among cyber attack victims. Finally, we introduce a distributional inference approach based on Wasserstein propagation to estimate cyber risk at the country level, particularly for regions with limited data availability. The proposed methodologies are applied to real-world data on cyber attacks that have occurred worldwide over the past decades. This research provides valuable information for policy makers and industry stakeholders to improve cybersecurity strategies.
Cyber risk assessment; Network models; Ordered response models; Wasserstein propagation
Settore STAT-01/A - Statistica
2025
Book Part (author)
File in questo prodotto:
File Dimensione Formato  
paper_sis_2025.pdf

accesso riservato

Tipologia: Publisher's version/PDF
Licenza: Nessuna licenza
Dimensione 448.73 kB
Formato Adobe PDF
448.73 kB Adobe PDF   Visualizza/Apri   Richiedi una copia
sis_2025 (3).pdf

embargo fino al 17/06/2026

Tipologia: Post-print, accepted manuscript ecc. (versione accettata dall'editore)
Licenza: Non specificato
Dimensione 176.25 kB
Formato Adobe PDF
176.25 kB Adobe PDF   Visualizza/Apri   Richiedi una copia
Pubblicazioni consigliate

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/2434/1174136
Citazioni
  • ???jsp.display-item.citation.pmc??? ND
  • Scopus ND
  • ???jsp.display-item.citation.isi??? 0
  • OpenAlex 0
social impact