Quarterly journal published in SPbPU
and edited by prof. Dmitry Zegzhda
Peter the Great St. Petersburg Polytechnic University
Institute of computer sciences and technologies
information security of computer systems
Information Security Problems. Computer Systems
Published since 1999.
ISSN 2071-8217
  • 2022 year
    • №1 2022
      • INFORMATION SECURITY ASPECTS

        V. G. Anisimov
        Peter the Great St. Petersburg Polytechnic University
        E. G. Anisimov, T. N. Saurenko
        Peoples’ Friendship University of Russia
        V.P. Los
        MIREA – Russian Technological University

        ASSESSMENT OF THE EFFICIENCY OF PROTECTION SYSTEMS OF COMPUTER NETWORKS FROM VIRAL ATTACKS

        Annotation:

        Computer networks are an important part of modern civilization. They are used literally in all spheres of human activity. Significant losses due to failures of these networks cause high requirements for the stability of their operation. Ensuring the necessary resilience, in particular, relies on the protection of computer networks from virus attacks. In its interests, appropriate protection systems are being created. As an indicator of the effectiveness of such systems, it is proposed to use the number of network computers that a virus manages to infect before it is detected and removed. The empirical basis for assessing the effectiveness of systems for protecting computer networks from virus attacks is the data obtained as a result of field tests and (or) previous operating experience. These data are random in nature, and their volume, as a rule, is significantly limited. An approach to assessing the effectiveness of systems for protecting computer networks from virus attacks, taking into account the indicated features of empirical data, is considered in this article. The approach is based on the presentation of empirical data in the form of a small sample from the general population of values of a random variable of the number of computers on the network that the virus managed to infect before it was detected and removed. The distribution function of this quantity is taken as a test model. The construction of the distribution function is based on the principle of maximum uncertainty. Shannon's entropy is taken as a measure of uncertainty.

        Keywords:

        computer network, virus attack, network protection system, protection efficiency
        Pages 11-17
      • INFORMATION SECURITY APPLICATION

        A.A.Poltavtsev
        Tver State Technical University (TvSTU)

        DATABASE PROTECTION AGAINST INSIGHT ATTACKS REACTIVE AND PROACTIVE METHODS

        Annotation:

        If the data is not available to the outside world, it is useless. The data must be available so that the necessary processing and planning can be carried out. Regulating and monitoring user access to a database is one of the important tasks of the database security community. Database protection against inference attacks is a part of information security that tries to prevent the disclosure of sensitive information through available information (tables, individual records). It is necessary to have methods capable of maintaining a balance between the use of information and the protection of data. The purpose of this work is to compare different inference control methods in order to evaluate the methods results to minimize both the loss of information and the risk of information disclosure.

        Keywords:

        Information Security, Security Monitoring, Security Control, Data Structuring, Data Engineering
        Pages 18-31
      • SOFTWARE SECURITY

        A.A. Kriulin, M.A. Eremeev, G.Yu. Poterpeev
        MIREA – Russian Technological University

        ANALYSIS OF HACKER GROUPS SOFTWARE TOOLS USING AT&T’S MITRE KNOWLEDGE BASE

        Annotation:

        The article discusses the possibility of using the Mitre AT&T knowledge base in the development of systems for detecting computer attacks involving malware. Using the Mitre API, a statistical analysis of malware is carried out, as well as techniques and tactics used by hacker groups to compile additional indicators of compromised attacks.

        Keywords:

        computer security, Mitre, APT, malware, executable file, statistical analysis
        Pages 32-40
      • NETWORK AND TELECOMMUNICATION SECURITY

        A. D. Fatin, E. Yu. Pavlenko
        Peter the Great St. Petersburg Polytechnic University

        IMMUNIZATION OF COMPLEX NETWORKS: TOPOLOGY AND METHODS

        Annotation:

        This paper discusses the main methods of immunization of modern computer networks. The greatest attention is paid to topologies and types of graph structures under consideration. An assessment and comparison of existing immunization strategies and methods for solving the problems of optimal selection of nodes for immunization in the context of the considered topologies is also carried out. The main advantages, disadvantages and areas of application of the selected topologies and methods for solving immunization problems are highlighted.

        Keywords:

        computer networks, immunization, cyber-physical systems, network security, scale-free networks
        Pages 41-50
      • APPLIED CRYPTOGRAPHY

        T. M. Tatarnikova, A. V. Sverlikov
        St. Petersburg State University of Aerospace Instrumentation
        I.A. Sikarev
        Russian State Hydrometeorological University

        METHODOLOGY FOR DETECTING ANOMALIES IN THE TRAFFIC OF THE INTERNET OF THINGS

        Annotation:

        It is shown that data protection technologies used in wired communication networks are not available for low-power devices of the Internet of things. Therefore, the search for an attack on IoT devices can be implemented by means of analyzing the traffic that carries the attack and, as a result, is classified as anomalous. A technique for searching for an anomaly in the network traffic of the Internet of things is proposed. A sequence of steps is considered to isolate a random component from the traffic generated by the IoT sensor devices, remaining after the exclusion of the main characteristics and which may contain an anomaly. The software implementation of the proposed technique can become part of the intrusion detection system for the Internet of things.

        Keywords:

        Internet of things, anomalous traffic, data security, traffic analysis technique, intrusion detection system
        Pages 51-57

        T.V. Starikov, K.Yu. Sopin, S.A. Dichenko, D.V. Samoylenko
        Krasnodar Higher Military School named after S.M. Shtemenko

        CRYPTOGRAPHIC CONTROL OF DATA INTEGRITY ACCORDING TO THE RULES OF CONSTRUCTION OF THE REED-SOLOMON CODE

        Annotation:

        The actual problem of optimization of information integrity control in data storage systems functioning in conditions of continuous growth of its volumes and destructive influences of an attacker is considered. A method of cryptographic integrity control of multidimensional data arrays based on the rules for constructing Reed-Solomon codes is presented.

        Keywords:

        information protection, data integrity control, cryptographic methods, Reed-Solomon code
        Pages 58-67

        D.E. Vilkhovsky
        Dostoevsky Omsk State University

        METHOD OF DETECTING LSB INSERTS IN LOW STEGO-PAYLOAD COLOR PHOTOGRAPHIC IMAGES

        Annotation:

        The paper presents a compact method of detecting LSB inserts in color photographic images that proves high efficiency when dealing with low stego-payload images. The method is based on an analysis of signatures of pairwise similarity the zero and first layers, an algorithm for largest empty rectangles, white (black) pixel dominance pattern and image moments analysis.

        Keywords:

        Steganalysis, steganographic analysis, stegocontainer analysis, LSB-insert detection
        Pages 68-76

        A.S. Sokolov, A.Y. Chernov, A.S. Konoplev
        Peter the Great St. Petersburg Polytechnic University

        SPECULATIVE EXECUTION ATTACK-RESISTANT CRYPTOSERVICES

        Annotation:

        The appearance of Meltdown/Spectre attacks exploiting the vulnerabilities in Intel processors via misuse of speculative executions has destroyed confidence in the security of user’s confidential data which includes cryptoservices secret parameters. The developed Meltdown/Spectre countermeasures demonstrated ineffectiveness in neutralizing the newly designed speculative execution attacks. Paper highlights a fundamental solution of specified issue via Intel ME technology usage. The dedicated Intel ME processor is immune to Meltdown/Spectre attacks, which makes it effective to be used as a cryptoprocessor. Implementation of the proposed approach can be achieved through the usage of Intel Dynamic Application Loader (Intel DAL) technology.

        Keywords:

        side-channel attacks, speculative execution, Meltdown, Spectre, Intel ME, Intel DAL, cryptoservice
        Pages 77-84

        K.Yu. Sopin, S.A. Dichenko, D.V. Samoylenko
        Krasnodar Higher Military School named after S.M. Shtemenko

        CRYPTOGRAPHIC DATA INTEGRITY CONTROL BASED ON GEOMETRIC FRACTALS

        Annotation:

        New complex tasks related to information security when scaling data storage systems are considered. A method of cryptographic integrity control of large data arrays based on geometric fractals is presented.

        Keywords:

        data storage system, information protection, data integrity control, hash function, Sierpinski triangle
        Pages 85-95
      • CYBER-PHYSIC SYSTEMS SECURITY

        V. D. Danilov, T. D. Ovasapyan, D. V. Ivanov, A. S. Konoplev
        Peter the Great St. Petersburg Polytechnic University

        SYNTHETIC DATA GENERATION FOR HONEYPOT SYSTEMS USING DEEP LEARNING METHODS

        Annotation:

        This article presents research aimed at analyzing methods for generating synthetic data to populate honeypot systems. To select the generated data types, the relevant target objects in the context of honeypot-systems are identified. Existing generation methods are investigated. Methods for evaluating the quality of generated data in the context of honeypot systems are also analyzed. As a result, a layout of an automated system for generating synthetic data for honeypot-systems is developed and its performance is evaluated.

        Keywords:

        honeypot system, deep learning methods, synthetic data generation, machine learning, inference attacks
        Pages 96-109
      • TECHNOLOGICAL SYSTEMS, ALGORITHMIZATION OF TASKS AND CONTROL OBJECTS MODELING

        A.M. Sukhov, A.V. Krupenin, V.I. Yakunin
        Krasnodar Higher Military School named after S.M. Shtemenko

        METHODS OF CONSTRUCTING MATHEMATICAL MODELS OF QUALITY INDICATORS OF THE RESULTS OF THE PROCESS OF FUNCTIONING OF THE INFORMATION SECURITY SYSTEM

        Annotation:

        A new approach is considered related to the construction of mathematical models of quality indicators for further evaluation of the process of functioning of the information security system, taking into account the requirements for the results of the operation. The vector of quality indicators of the results of the process of functioning of the system. Under consideration is substantiated, models of the virtual indicator and the required quality of the results of the process of functioning of the information security system are presented.

        Keywords:

        mathematical model, quality indicator, destructive impact scenario, unified information space, information security system
        Pages 110-120

        A.Yu. Garkushev
        St. Petersburg State Marine Technical University
        A.F. Suprun
        Peter the Great St. Petersburg Polytechnic University
        S. Yu. Sysuev
        Mikhailovskaya Military Artillery Academy

        PROCEDURE FOR INTEGRATION OF INFORMATION PROTECTION MODULES INTO DOMESTIC AUTOMATED DESIGN SYSTEMS IN SHIPBUILDING

        Annotation:

        The article is devoted to the development of a model and algorithm for solving the problem of ensuring information security in promising domestic computer-aided design systems based on a modified method of branches and boundaries using the duality of solutions to linear programming problems. As a result, an algorithm was obtained that allows the developer to ensure the information security of shipbuilding projects at a sufficient level.

        Keywords:

        information security, ship design, mathematical model
        Pages 121-132
  • 2021 year
  • 2020 year
  • 2019 year
  • 2018 year
  • 2017 year
  • 2016 year
  • 2015 year
  • 2014 year
  • 2013 year
  • 2012 year
  • 2011 year
  • 2010 year
  • 2009 year
  • 2008 year
  • 2007 year
  • 2006 year
  • 2005 year
  • 2004 year
  • 2003 year
  • 2002 year
  • 2001 year
  • 2000 year
  • 1999 year