Detection of Weaknesses in Information Systems for Automatic Selection of Security Actions
- Authors: Doynikova E.V.1, Fedorchenko A.V.1, Kotenko I.V.1
-
Affiliations:
- St. Petersburg Institute for Informatics and Automation, Russian Academy of Sciences
- Issue: Vol 53, No 8 (2019)
- Pages: 1029-1037
- Section: Article
- URL: https://journal-vniispk.ru/0146-4116/article/view/176000
- DOI: https://doi.org/10.3103/S014641161908008X
- ID: 176000
Cite item
Abstract
The problem of automation of the process of detecting weaknesses in information systems based on the analysis of its vulnerabilities is solved. The input data used for the classification, the process of their preparation, and the classification results are described. The interpretation and analysis of the results are presented. The problem solved is a part of the approach proposed by the authors to automatic formation of a set of required security tools for a particular information system. A necessary set of security tools is determined by the set of possible threats.
About the authors
E. V. Doynikova
St. Petersburg Institute for Informatics and Automation, Russian Academy of Sciences
Author for correspondence.
Email: elenadoynikova@mail.ru
Russian Federation, St. Petersburg, 199178
A. V. Fedorchenko
St. Petersburg Institute for Informatics and Automation, Russian Academy of Sciences
Email: ivkote1@mail.ru
Russian Federation, St. Petersburg, 199178
I. V. Kotenko
St. Petersburg Institute for Informatics and Automation, Russian Academy of Sciences
Author for correspondence.
Email: ivkote1@mail.ru
Russian Federation, St. Petersburg, 199178
Supplementary files
