为安全代理行为模型开发一种高级威胁分类器

О.В. Мілов, С.В. Мілевський, О. Г. Король
{"title":"为安全代理行为模型开发一种高级威胁分类器","authors":"О.В. Мілов, С.В. Мілевський, О. Г. Король","doi":"10.30748/nitps.2019.37.15","DOIUrl":null,"url":null,"abstract":"The modern development of high technologies and computer technology has had a significant impact on the development of business process management systems, covering all areas of the state economic activity. However, in parallel with this, the era of high technologies has significantly expanded the range of threats aimed at the contour of business processes, and, first of all, on information resources that ensure the functioning of the business process circuit. At the same time, threats have acquired signs of hybridity and synergy. In these conditions, the urgent issue in the formation of the information security management system of the business process circuit is the timely detec-tion and subsequent analysis of modern threats. In order to generalize the approach of classifying hybrid cyber threats into security components: information security (IS), cybersecurity (CS), security of information (SI) of the business process circuit and their information resources, an advanced classifier of threats to the business process circuit and its information resources is proposed, including cost estimates of the threats implementation and estimates of losses associated with threats. The proposed extensions to the threat classifier allow to give probabilistic assessments of the implementation of certain threats. Based on the analysis of approaches, estimates of indicators of the intruders danger degree and the degree of protective measures implementation under the conditions of modern hybrid cyber threats are proposed.","PeriodicalId":52997,"journal":{"name":"Nauka i tekhnika Povitrianikh Sil Zbroinikh Sil Ukrayini","volume":"1 1","pages":""},"PeriodicalIF":0.0000,"publicationDate":"2019-11-28","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":"{\"title\":\"Developing an advanced classifier of threat for security agent behavior models\",\"authors\":\"О.В. Мілов, С.В. Мілевський, О. Г. Король\",\"doi\":\"10.30748/nitps.2019.37.15\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"The modern development of high technologies and computer technology has had a significant impact on the development of business process management systems, covering all areas of the state economic activity. However, in parallel with this, the era of high technologies has significantly expanded the range of threats aimed at the contour of business processes, and, first of all, on information resources that ensure the functioning of the business process circuit. At the same time, threats have acquired signs of hybridity and synergy. In these conditions, the urgent issue in the formation of the information security management system of the business process circuit is the timely detec-tion and subsequent analysis of modern threats. In order to generalize the approach of classifying hybrid cyber threats into security components: information security (IS), cybersecurity (CS), security of information (SI) of the business process circuit and their information resources, an advanced classifier of threats to the business process circuit and its information resources is proposed, including cost estimates of the threats implementation and estimates of losses associated with threats. The proposed extensions to the threat classifier allow to give probabilistic assessments of the implementation of certain threats. Based on the analysis of approaches, estimates of indicators of the intruders danger degree and the degree of protective measures implementation under the conditions of modern hybrid cyber threats are proposed.\",\"PeriodicalId\":52997,\"journal\":{\"name\":\"Nauka i tekhnika Povitrianikh Sil Zbroinikh Sil Ukrayini\",\"volume\":\"1 1\",\"pages\":\"\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2019-11-28\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"0\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"Nauka i tekhnika Povitrianikh Sil Zbroinikh Sil Ukrayini\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.30748/nitps.2019.37.15\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"Nauka i tekhnika Povitrianikh Sil Zbroinikh Sil Ukrayini","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.30748/nitps.2019.37.15","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0

摘要

现代高科技和计算机技术的发展对业务流程管理系统的发展产生了重大影响,涵盖了国家经济活动的各个领域。然而,与此同时,高技术时代已经大大扩大了针对业务流程轮廓的威胁范围,首先是针对确保业务流程电路功能的信息资源的威胁范围。与此同时,各种威胁也呈现出混合和协同的迹象。在这种情况下,业务流程电路信息安全管理系统形成的迫切问题是及时发现和后续分析现代威胁。为了将混合网络威胁分类为业务流程电路及其信息资源的信息安全(IS)、网络安全(CS)、信息安全(SI)等安全组件,提出了业务流程电路及其信息资源威胁的高级分类器,包括威胁实施的成本估算和威胁相关损失估算。对威胁分类器提出的扩展允许对某些威胁的实现进行概率评估。在分析方法的基础上,提出了现代混合网络威胁条件下入侵者危险程度指标和防护措施实施程度的估计方法。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
Developing an advanced classifier of threat for security agent behavior models
The modern development of high technologies and computer technology has had a significant impact on the development of business process management systems, covering all areas of the state economic activity. However, in parallel with this, the era of high technologies has significantly expanded the range of threats aimed at the contour of business processes, and, first of all, on information resources that ensure the functioning of the business process circuit. At the same time, threats have acquired signs of hybridity and synergy. In these conditions, the urgent issue in the formation of the information security management system of the business process circuit is the timely detec-tion and subsequent analysis of modern threats. In order to generalize the approach of classifying hybrid cyber threats into security components: information security (IS), cybersecurity (CS), security of information (SI) of the business process circuit and their information resources, an advanced classifier of threats to the business process circuit and its information resources is proposed, including cost estimates of the threats implementation and estimates of losses associated with threats. The proposed extensions to the threat classifier allow to give probabilistic assessments of the implementation of certain threats. Based on the analysis of approaches, estimates of indicators of the intruders danger degree and the degree of protective measures implementation under the conditions of modern hybrid cyber threats are proposed.
求助全文
通过发布文献求助,成功后即可免费获取论文全文。 去求助
来源期刊
自引率
0.00%
发文量
14
审稿时长
6 weeks
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术官方微信