首页> 外文会议>Chinese Conference on Trusted Computing and Information Security(CTCIS'06); 20061021-23; Baoding(CN) >A Fuzzy Set-Based Approach for Model-Based Internet-Banking System Security Risk Assessment
【24h】

A Fuzzy Set-Based Approach for Model-Based Internet-Banking System Security Risk Assessment

机译:基于模糊集的基于模型的网上银行系统安全风险评估方法

获取原文
获取原文并翻译 | 示例

摘要

A fuzzy set-based evaluation approach is demonstrated to assess the security risks for Internet-banking System. The Internet-banking system is semi-formally described using Unified Modeling Language (UML) to specify the behavior and state of the system on the base of analyzing the existing qualitative risk assessment methods. And a quantitative method based on fuzzy set is used to measure security risks of the system. A case study was performed on the WEB server of the Internet-banking System using fuzzy-set based assessment algorithm to quantitatively compute the security risk severity. The numeric result also provides a method to decide the most critical component which should arouse the system administrator enough attention to take the appropriate security measure or controls to alleviate the risk severity. The experiments show this method can be used to quantify the security properties for the Internet-banking System in practice.
机译:演示了一种基于模糊集的评估方法来评估互联网银行系统的安全风险。在分析现有的定性风险评估方法的基础上,使用统一建模语言(UML)对互联网银行系统进行半正式描述,以指定其行为和状态。并采用基于模糊集的定量方法对系统的安全风险进行度量。使用基于模糊集的评估算法在网上银行系统的WEB服务器上进行了案例研究,以定量计算安全风险的严重性。数值结果还提供了一种确定最关键组件的方法,该组件应引起系统管理员足够的重视,以采取适当的安全措施或控制措施来减轻风险的严重性。实验表明,该方法在实践中可用于量化网上银行系统的安全性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号