首页> 外文会议>IEEE International Conference on Trust, Security and Privacy in Computing and Communications >Towards Automation of Privacy and Security Risks Analysis in Identity Management Systems
【24h】

Towards Automation of Privacy and Security Risks Analysis in Identity Management Systems

机译:朝着识别管理系统的隐私和安全风险的自动化分析

获取原文

摘要

Currently, risk analysis methods for identity management systems (IDMSs) mainly rely on manual inspections. Manual inspection is time consuming and expensive. This article introduces the executable model-based risk analysis method (EM-BRAM) with the aim of automating privacy and security risks analysis in IDMSs. The EM-BRAM identifies risk factors inherent in IDMSs and uses them as inputs to a colored petri nets (CPNs) model of a targeted IDMS. It then verifies the system's risk using CPNs' state space analysis and queries. We apply the method to analyze privacy and security risk in the OpenID IDMS.
机译:目前,身份管理系统(IDMS)的风险分析方法主要依赖于手动检查。手动检查是耗时和昂贵的。本文介绍了基于可执行模式的风险分析方法(EM-BRAM),目的是在IDMS中自动化隐私和安全风险分析。 EM-BRAM识别IDMS中固有的危险因素,并使用它们作为目标IDMS的彩色Petri网(CPNS)模型的输入。然后,它使用CPNS的状态空间分析和查询来验证系统的风险。我们应用该方法来分析OpenID IDMS中的隐私和安全风险。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号