Research on Security Threats and Risk Assessment of Web Information System

LEI Min,LIU Xiao-ming,ZHANG Hong,WANG Mian,YANG Yu
DOI: https://doi.org/10.13190/j.jbupt.2016.s.020
2016-01-01
Abstract:An increasing numbers of web information systems are deployed on the Internet to provide service, however, the web information system is facing various security threats, from physical security on bottom layer to communications and operations management, system security, application security and da-ta security. The article gave out classifications of security threats faced by type of threats in web applica-tions and set up grade for each threat according to its extent of danger, probability of occurrence and re-mediation. The article also uses fuzzy comprehensive evaluation to build a security analysis model aiming at constructing common analysis framework for web information system security assessment.
What problem does this paper attempt to address?