RUS  ENG
Full version
JOURNALS // Sistemy i Sredstva Informatiki [Systems and Means of Informatics] // Archive

Sistemy i Sredstva Inform., 2016 Volume 26, Issue 3, Pages 60–73 (Mi ssi474)

This article is cited in 2 papers

Protection of business logic against zero day attacks

A. A. Grushoa, D. V. Smirnovb

a Institute of Informatics Problems, Federal Research Center "Computer Science and Control" of the Russian Academy of Sciences, 44-2 Vavilova Str., Moscow 119333, Russian Federation
b Sberbank of Russia, 19 Vavilov Str., Moscow 117999, Russian Federation

Abstract: The paper is devoted to creation of architecture of an information system steady against zero day attacks from the Internet. Justification of security of an information system from zero day attacks is found and the description of conditions under which the required security is provided is given. The architecture of information systems of commercial producers regarding resistance to zero day attacks is analyzed, the model of threats to information systems available in the Internet is described, and the methods of realization of protection of information systems against zero day attacks are developed.

Keywords: information security; zero day attacks; business logic; white lists; black lists; secure architecture; security server.

Received: 03.08.2016

DOI: 10.14357/08696527160304



Bibliographic databases:


© Steklov Math. Inst. of RAS, 2024