Petri net-based methods for analyzing structural security in e-commerce business processes

被引:13
|
作者
Yu, Wangyang [1 ,2 ,3 ]
Ding, Zhijun [4 ]
Liu, Lu [5 ]
Wang, Xiaoming [1 ,2 ,3 ]
Crossley, Richard David [5 ]
机构
[1] Minist Educ, Key Lab Modern Teaching Technol, Xian 710062, Peoples R China
[2] Engn Lab Teaching Informat Technol Shaanxi Prov, Xian 710119, Peoples R China
[3] Shaanxi Normal Univ, Sch Comp Sci, Xian 710119, Peoples R China
[4] Tongji Univ, Dept Comp Sci, Shanghai 201804, Peoples R China
[5] Univ Derby, Dept Elect Comp & Math, Derby DE221 GB, England
基金
中国国家自然科学基金;
关键词
Petri net; E-commerce; Business process; Structural security; CORRECTNESS;
D O I
10.1016/j.future.2018.04.090
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
The rapid development of e-commerce worldwide, means more e-commerce business processes adopting the structure of multiple participants; these include shopper clients, merchant and third-party payment platforms (TPPs), banks, and so on. It is a distributed and complex system, where communications among these participants rely on the web services and Application Programming Interfaces (APIs) such as Cashier-as-a-Service or CaaS. This introduces new security challenges due to complex interactions among multiple participants, and any design flaws in procedure structures may result in serious security issues. We study the structural security issues based on Petri nets, and a framework for analyzing structural security in e-commerce business process is proposed. Petri net-based modeling and analysis methods are also provided. Given the specifications of e-commerce business processes, the proposed methods can help designers analyze structural security issues of an e-commerce business process. (C) 2018 Elsevier B.V. All rights reserved.
引用
收藏
页码:611 / 620
页数:10
相关论文
共 50 条
  • [41] A mobile agent based security model for E-commerce
    Hu, JL
    Wang, JZ
    Peng, DY
    Han, GD
    ISTM/2005: 6th International Symposium on Test and Measurement, Vols 1-9, Conference Proceedings, 2005, : 7868 - 7871
  • [42] Information Security Solutions in E-Commerce Based on XML
    Yu, Zhenhai
    Liu, Xinjun
    2010 INTERNATIONAL CONFERENCE ON INFORMATION, ELECTRONIC AND COMPUTER SCIENCE, VOLS 1-3, 2010, : 1538 - +
  • [43] The Security Research on Network Accounting Based on E-commerce
    Li, Yaping
    Quan, Quan
    Wang, Lingli
    2012 INTERNATIONAL CONFERENCE ON FUTURE COMMUNICATION AND COMPUTER TECHNOLOGY (ICFCCT 2012), 2012, : 125 - 129
  • [44] Study and Analysis of the E-Commerce security Based on WPKI
    Liu, Fang
    Yang, Qi
    2008 INTERNATIONAL SYMPOSIUM ON INTELLIGENT INFORMATION TECHNOLOGY APPLICATION WORKSHOP: IITA 2008 WORKSHOPS, PROCEEDINGS, 2008, : 507 - 510
  • [45] Analyzing E-Commerce Business Process Nets via Incidence Matrix and Reduction
    Yu, Wangyang
    Yan, Chungang
    Ding, Zhijun
    Jiang, Changjun
    Zhou, Mengchu
    IEEE TRANSACTIONS ON SYSTEMS MAN CYBERNETICS-SYSTEMS, 2018, 48 (01): : 130 - 141
  • [46] Analyzing encryption technology applied in farm product e-commerce system security
    Zhang Chunhua
    ICEMI 2007: PROCEEDINGS OF 2007 8TH INTERNATIONAL CONFERENCE ON ELECTRONIC MEASUREMENT & INSTRUMENTS, VOL IV, 2007, : 433 - 436
  • [47] E-Commerce Liability and Security Breaches in Mobile Payment for e-Business Sustainability
    Chun, Se-Hak
    SUSTAINABILITY, 2019, 11 (03):
  • [48] Reengineering user interfaces of e-commerce applications using business processes
    Zhang, Qi
    Chen, Rongchao
    Zou, Ying
    ICSM 2006: 22ND IEEE INTERNATIONAL CONFERENCE ON SOFTWARE MAINTENANCE, PROCEEDINGS, 2006, : 428 - +
  • [49] Petri net-based object-centric processes with read-only data
    Ghilardi, Silvio
    Gianola, Alessandro
    Montali, Marco
    Rivkin, Andrey
    INFORMATION SYSTEMS, 2022, 107
  • [50] A Petri net-based simulation model for the flexible modelling and analysis of building construction processes
    Samkari, Kais
    Franz, Volkhard
    SIMULATION IN PRODUKTION UND LOGISTK 2013, 2013, 316 : 505 - 514