Approaches to the Construction of Behavioural Patterns of Information System Users

Pavels Osipovs, Arkady Borisov

Abstract


The paper describes the methodology of constructing models of typical user behaviour in a distributed information system, which may operate with sensitive data. The model is designed for the detection of abnormal behaviour occurring during the invasion of an intruder in the system. Also, the paper deals with the general approach to the implementation of the model infrastructure and algorithms of the main modules. Moreover, two possible methods for implementing the model in the target system are described.

Keywords:

Anomaly detection; distributed information system; e-Health; HL7; Python; SOAP; user behaviour model

Full Text:

PDF

References


Della Mea, Vincenzo. "What is e-Health: The death of telemedicine?". Journal of Medical Internet Research (Jmir.org) 3 (2): e22. doi:10.2196/jmir.3.2.e22. PMC 1761900. PMID 11720964. Retrieved 2012-04-15.

Jack Koftikian; Simple Object Access Protocol (SOAP); Technical University Hamburg-Harburg.

Roi Saltzman; Active Man in the Middle Attacks. A SECURITY ADVISORY; A whitepaper from IBM Rational Application Security Group. February 27, 2009.

WS-Secure specification description [Online]. Available: http://en.wikipedia.org/wiki/WS-SecureConversation, [Accessed: Sept. 01, 2012].

Web Services Policy Framework (WS-Policy); [Online]. Available: http://specs.xmlsoap.org/ws/2004/09/policy/ws-policy.pdf, [Accessed: Sept. 01, 2012].

P. Osipovs, A. Borisovs; Abnormal action detection based on Markov models; Automatic Control and Computer Sciences; Volume 41 / 2007 - Volume 45 / 2011; ISSN 0146-4116 (Print) 1558-108X (Online); May 05, 2011.

P. Osipovs, A. Borisovs; Using the Deferred Approach in Scientific Applications; Scientific Journal of Riga Technical University, Series 5, Computer Science, Vol. 49, Information Technology and Management Science, pp. 139-144, 2011.

Prof. Walter Kriha; Lecture: „Selected Topics on Software-Technology Ultra-Large Scale Sites”; University Hochschule der Medien, Stuttgart, 2010. [Online]. Available: www.christof-trauch.de/nosqldbs.pdf [Accessed: Sept. 23, 2012].

Samek M. (2008), Event-Driven Programming for Embedded Systems, Newnes 2008. ISBN-10: 0750687061; ISBN-13: 978-0750687065.

Markov, A. A. (1954). Theory of Algorithms. [Translated by Jacques J. Schorr-Kon and PST staff] Imprint Moscow, Academy of Sciences of the USSR, 1954 [Jerusalem, Israel Program for Scientific Translations, 1961; available from Office of Technical Services, United States Department of Commerce] Added t.p. in Russian Translation of Works of the Mathematical Institute, Academy of Sciences of the USSR, v. 42. Original title: Teoriya algorifmov. [QA248.M2943 Dartmouth College library. U.S. Dept. of Commerce, Office of Technical Services, number OTS 60-51085.]


Refbacks

  • There are currently no refbacks.


Copyright (c) 2012 Pavels Osipovs, Arkady Borisov

Creative Commons License
This work is licensed under a Creative Commons Attribution 4.0 International License.