Trudy SPIIRAN
RUS  ENG    JOURNALS   PEOPLE   ORGANISATIONS   CONFERENCES   SEMINARS   VIDEO LIBRARY   PACKAGE AMSBIB  
General information
Latest issue
Archive

Search papers
Search references

RSS
Latest issue
Current issues
Archive issues
What is RSS



Informatics and Automation:
Year:
Volume:
Issue:
Page:
Find






Personal entry:
Login:
Password:
Save password
Enter
Forgotten password?
Register


Trudy SPIIRAN, 2019, Issue 18, volume 6, Pages 1269–1300
DOI: https://doi.org/10.15622/sp.2019.18.6.1269-1300
(Mi trspy1081)
 

This article is cited in 2 scientific papers (total in 2 papers)

Information Security

Method for assessing effectiveness of protection of electronic document management using the Petri and Markov nets apparatus

Yu. K. Yazovab, O. S. Avsentievcd, A. O. Avsentevd, I. O. Rubtsovac

a Testing Institute of Problems of Technical Protection of information, Federal Service for Technical and Export Control of Russia
b Voronezh State Technical University
c Belgorod University of Cooperation, Economics and Law
d Voronezh Institute of the Ministry of Interior of Russia
Abstract: Traditional approaches to assessing the effectiveness of information security, based on a comparison of the possibilities of realizing threats to information security in absence and application of protection measures, do not allow to analyze the dynamics of suppression by security measures of the process of implementing threats. The paper proposes a new indicator of the effectiveness of protection of electronic documents, aimed at assessing the possibility of advancing security measures of the process of implementing threats in electronic document management systems using the probability-time characteristics of the dynamics of the application of protection measures and the implementation of threats to electronic documents. Mathematical models were developed using the Petri–Markov network apparatus and analytical relationships were obtained for calculating the proposed indicator using the example of the "traffic tunneling" threat (placing intruder packets in trusted user packets) and unauthorized access (network attacks) to electronic documents, as well as the threat of intrusion of malicious program by carrying out an "blind IP spoofing" attack (network address spoofing). Examples of calculating the proposed indicator and graphs of its dependence on the probability of detecting network attacks by the intrusion detection system and on the probability of malware detection by the anti-virus protection system are given. Quantitative dependencies are obtained for the effectiveness of protection of electronic documents due to being ahead of protection measures for threat realization processes, both on the probability of detecting an intrusion or the probability of detecting a malicious program, and on the ratio of the time spent by the protection system on detecting an attempt to implement a threat and taking measures to curb its implementation, and threat implementation time. Models allow not only to evaluate the effectiveness of measures to protect electronic documents from threats of destruction, copying, unauthorized changes, etc., but also to quantify the requirements for the response time of adaptive security systems to detectable actions aimed at violating the security of electronic documents, depending on the probability -temporal characteristics of threat realization processes, to identify weaknesses in protection systems related to the dynamics of threat realization and the reaction of defense systems to such threats electronic document.
Keywords: efficiency indicator, functional model, Petri–Markov network, security threat, security measure, intrusion detection system, anti-virus protection system.
Received: 27.06.2019
Document Type: Article
UDC: 621.3
Language: Russian
Citation: Yu. K. Yazov, O. S. Avsentiev, A. O. Avsentev, I. O. Rubtsova, “Method for assessing effectiveness of protection of electronic document management using the Petri and Markov nets apparatus”, Tr. SPIIRAN, 18:6 (2019), 1269–1300
Citation in format AMSBIB
\Bibitem{YazAvsAvs19}
\by Yu.~K.~Yazov, O.~S.~Avsentiev, A.~O.~Avsentev, I.~O.~Rubtsova
\paper Method for assessing effectiveness of protection of electronic document management using the Petri and Markov nets apparatus
\jour Tr. SPIIRAN
\yr 2019
\vol 18
\issue 6
\pages 1269--1300
\mathnet{http://mi.mathnet.ru/trspy1081}
\crossref{https://doi.org/10.15622/sp.2019.18.6.1269-1300}
Linking options:
  • https://www.mathnet.ru/eng/trspy1081
  • https://www.mathnet.ru/eng/trspy/v18/i6/p1269
  • This publication is cited in the following 2 articles:
    Citing articles in Google Scholar: Russian citations, English citations
    Related articles in Google Scholar: Russian articles, English articles
    Informatics and Automation
    Statistics & downloads:
    Abstract page:263
    Full-text PDF :103
     
      Contact us:
     Terms of Use  Registration to the website  Logotypes © Steklov Mathematical Institute RAS, 2024