Petri net-based methods for analyzing structural security in e-commerce business processes

被引:13
|
作者
Yu, Wangyang [1 ,2 ,3 ]
Ding, Zhijun [4 ]
Liu, Lu [5 ]
Wang, Xiaoming [1 ,2 ,3 ]
Crossley, Richard David [5 ]
机构
[1] Minist Educ, Key Lab Modern Teaching Technol, Xian 710062, Peoples R China
[2] Engn Lab Teaching Informat Technol Shaanxi Prov, Xian 710119, Peoples R China
[3] Shaanxi Normal Univ, Sch Comp Sci, Xian 710119, Peoples R China
[4] Tongji Univ, Dept Comp Sci, Shanghai 201804, Peoples R China
[5] Univ Derby, Dept Elect Comp & Math, Derby DE221 GB, England
基金
中国国家自然科学基金;
关键词
Petri net; E-commerce; Business process; Structural security; CORRECTNESS;
D O I
10.1016/j.future.2018.04.090
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
The rapid development of e-commerce worldwide, means more e-commerce business processes adopting the structure of multiple participants; these include shopper clients, merchant and third-party payment platforms (TPPs), banks, and so on. It is a distributed and complex system, where communications among these participants rely on the web services and Application Programming Interfaces (APIs) such as Cashier-as-a-Service or CaaS. This introduces new security challenges due to complex interactions among multiple participants, and any design flaws in procedure structures may result in serious security issues. We study the structural security issues based on Petri nets, and a framework for analyzing structural security in e-commerce business process is proposed. Petri net-based modeling and analysis methods are also provided. Given the specifications of e-commerce business processes, the proposed methods can help designers analyze structural security issues of an e-commerce business process. (C) 2018 Elsevier B.V. All rights reserved.
引用
收藏
页码:611 / 620
页数:10
相关论文
共 50 条
  • [31] E-Commerce Security based on a security engineering life cycle
    Wu, Yanyan
    ACHIEVEMENTS IN ENGINEERING MATERIALS, ENERGY, MANAGEMENT AND CONTROL BASED ON INFORMATION TECHNOLOGY, PTS 1 AND 2, 2011, 171-172 : 640 - 643
  • [32] Construct the Net Auditing Architecture Based on E-commerce
    Bo, Shen
    2009 INTERNATIONAL CONFERENCE ON E-BUSINESS AND INFORMATION SYSTEM SECURITY, VOLS 1 AND 2, 2009, : 855 - 858
  • [33] Computer security technology in E-commerce platform business model construction
    Ma, Xiuli
    Wang, Zehao
    HELIYON, 2024, 10 (07)
  • [34] Determinants of business-to-business e-commerce implementation and performance: a structural model
    Power, D
    SUPPLY CHAIN MANAGEMENT-AN INTERNATIONAL JOURNAL, 2005, 10 (02) : 96 - 113
  • [35] Modeling E-Commerce Workflow Using Mobile-Agent-oriented Petri Net
    Gan, Zaobin
    Yang, Xiao
    PROCEEDINGS OF THE 2009 FIFTH INTERNATIONAL CONFERENCE ON NEXT GENERATION WEB SERVICES PRACTICES, NWESP 2009, 2009, : 102 - 107
  • [36] Framework of Evaluating E-Commerce Based on Business Process
    Wang, Yuheng
    2010 INTERNATIONAL CONFERENCE ON E-EDUCATION, E-BUSINESS, E-MANAGEMENT AND E-LEARNING: IC4E 2010, PROCEEDINGS, 2010, : 499 - 501
  • [37] Study on an E-commerce business system based on cXML
    Chen, An-Na
    Cao, Yang
    Cheng, Nian-Ling
    Wuhan Daxue Xuebao (Lixue Ban)/Journal of Wuhan University (Natural Science Edition), 2002, 48 (05):
  • [38] Security Solution of Mobile E-commerce Based on WAP
    Jin, Minli
    Cheng, Yang
    Peng, Wuliang
    E-ENGINEERING & DIGITAL ENTERPRISE TECHNOLOGY VII, PTS 1 AND 2, 2009, 16-19 : 169 - 173
  • [39] An XML based Flexible Security E-Commerce Mode
    Chai, Sheng
    Cheng, Yang
    Qiu, Jifan
    Zhou, Wei
    PROCEEDINGS OF THE INTERNATIONAL SYMPOSIUM ON ELECTRONIC COMMERCE AND SECURITY, 2008, : 71 - 73
  • [40] Dynamic e-commerce security based on the web services
    Zhang, GX
    Zuo, GW
    GRID AND COOPERATIVE COMPUTING, PT 1, 2004, 3032 : 1030 - 1033