Using Process Mining and Model-driven Engineering to Enhance Security of Web Information Systems

被引:7
作者
Bernardi, Simona [1 ]
Piraces Alastuey, Raul [2 ]
Trillo-Lado, Raquel [2 ]
机构
[1] Ctr Univ Def, Zaragoza, Spain
[2] Univ Zaragoza, Zaragoza, Spain
来源
2017 2ND IEEE EUROPEAN SYMPOSIUM ON SECURITY AND PRIVACY WORKSHOPS (EUROS&PW) | 2017年
基金
欧盟地平线“2020”;
关键词
process mining; model-driven engineering; security; web information systems;
D O I
10.1109/EuroSPW.2017.66
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
Due to the development of Smart Cities and Internet of Things, there has been an increasing interest in the use of Web information systems in different areas and domains. Besides, the number of attacks received by this kind of systems is increasing continuously. Therefore, there is a need to strengthen their protection and security. In this paper, we propose a method based on Process Mining and Model-Driven Engineering to improve the security of Web information systems. Besides, this method has been applied to the SID Digital Library case study and some preliminary results to improve the security of this system are described.
引用
收藏
页码:160 / 166
页数:7
相关论文
共 16 条
[1]  
Accorsi R., 2013, Proceedings of the 28th Annual ACM Symposium on Applied Computing, P1462, DOI [DOI 10.1145/2480362.2480634, 10.1145/2480362.2480634]
[2]  
Andress J., 2014, The basics of information security: understanding the fundamentals of InfoSec in theory and practice, V2nd
[3]  
[Anonymous], PMS METHODOLOGY
[4]  
[Anonymous], TECH REP
[5]  
[Anonymous], 1590922011 ISO ISOIE
[6]  
[Anonymous], ANOMALY DETECTION US
[7]   Timing-Failure Risk Assessment of UML Design Using Time Petri Net Bound Techniques [J].
Bernardi, Simona ;
Campos, Javier ;
Merseguer, Jose .
IEEE TRANSACTIONS ON INDUSTRIAL INFORMATICS, 2011, 7 (01) :90-104
[8]  
Brambilla Marco, 2012, MODELDRIVEN SOFTWARE
[9]  
Dua S, 2011, DATA MINING AND MACHINE LEARNING IN CYBERSECURITY, P1, DOI 10.1201/b10867
[10]  
Gomes A., 2016, Proceedings of the 29th Annual Symposium on User Interface Software and Technology, UIST'16 Adjunct, P159