RUS  ENG
Full version
JOURNALS // Informatics and Automation // Archive

Tr. SPIIRAN, 2010, Issue 15, Pages 231–245 (Mi trspy398)

This article is cited in 2 papers

Visual toolkit for construction of the models of complex “information system – personnel”, used for imitation of socioengineering attacks

A. L. Tulupyevab, A. E. Pashchenkob, A. A. Azarova, T. V. Tulupyevaabc

a St. Petersburg State University, Department of Mathematics and Mechanics
b St. Petersburg Institute for Informatics and Automation of RAS
c Northwestern State Services University

Abstract: The prototype of the program complex, used for demonstration of basic possibility for estimation the protection of personnel of informative system from socioengineering attack on the base of generalized approach, focused on analyze of trees of attacks, is described. The representation of informative system and its personnel in the specified program complex is based on hierarchy of information models, which consists of information model of the user, information model if the users group, information model of control area, information model of hardware and software complex, informative model of critical information objects (system of documents), information model of informative system itself and links between corresponded objects. The list of technologies, used during the development of this product, the reasons for using this technologies and brief substantiation of some technical solutions is resulted. The example of proceeding of program complex prototype during editing the information about socioengineering attack, as well as during the imitation of socioengineering attack on the recompensation type on the personnel of this system is considered.

Keywords: information system, personnel, socio-engineering attack, visual editor, malefactor.

Received: 20.12.2010



© Steklov Math. Inst. of RAS, 2024