Case studies and examples
Now that we’ve explored the theoretical aspects of correlation, causation, bias, and variance, let’s dive into some real-world case studies and examples. These scenarios will help you see how these concepts are applied in the field of cybersecurity, providing a practical perspective that enhances your understanding and application skills.
Case study 1 – correlation versus causation in phishing attacks
Imagine a cybersecurity firm that analyses email traffic to identify phishing attempts. Through their analysis, they find a strong correlation between the times when emails are sent and the incidence of phishing attacks, with a spike in phishing emails observed during early morning hours:
- Initial observation: The firm initially considers the possibility that attackers prefer early mornings for their activities. However, further investigation reveals that this correlation does not imply causation. Instead, it›s discovered...