<?xml version="1.0" encoding="utf-8"?>
<!DOCTYPE article PUBLIC "-//NLM//DTD JATS (Z39.96) Journal Publishing DTD v1.3 20210610//EN" "https://jats.nlm.nih.gov/publishing/1.3/JATS-journalpublishing1-3.dtd">
<article article-type="research-article" dtd-version="1.3" xml:lang="ru">
  <front xmlns:xlink="http://www.w3.org/1999/xlink">
    <journal-meta>
      <journal-id journal-id-type="elibrary">9004</journal-id>
      <journal-title-group>
        <journal-title>Problems of information security. Computer systems</journal-title>
        <trans-title-group xml:lang="ru">
          <trans-title>Проблемы информационной безопасности. Компьютерные системы</trans-title>
        </trans-title-group>
      </journal-title-group>
      <issn pub-type="epub">2071-8217</issn>
    </journal-meta>
    <article-meta xmlns:xlink="http://www.w3.org/1999/xlink">
      <article-id pub-id-type="publisher-id">5</article-id>
      <article-id pub-id-type="doi">10.48612/jisp/rk43-u13d-he2g</article-id>
      <title-group>
        <article-title>A method of responding to targeted attacks based on the mapping of information security events using indication signatures</article-title>
        <trans-title-group xml:lang="ru">
          <trans-title>Метод реагирования на целевые атаки, основанный на отображении событий информационной безопасности с применением индикационных сигнатур</trans-title>
        </trans-title-group>
      </title-group>
      <contrib-group>
        <contrib contrib-type="author">
          <name>
            <surname>Andrushkevich</surname>
            <given-names>Daria</given-names>
          </name>
          <xref ref-type="aff" rid="aff1"/>
        </contrib>
        <contrib contrib-type="author">
          <name>
            <surname>Andrushkevich</surname>
            <given-names>Sergey</given-names>
          </name>
          <xref ref-type="aff" rid="aff1"/>
        </contrib>
        <contrib contrib-type="author">
          <name>
            <surname>Kryukov</surname>
            <given-names>Roman</given-names>
          </name>
          <xref ref-type="aff" rid="aff1"/>
        </contrib>
      </contrib-group>
      <aff id="aff1">Mozhaisky Military Aerospace Academy</aff>
      <pub-date publication-format="electronic" date-type="pub" iso-8601-date="2023-12-25">
        <day>25</day>
        <month>12</month>
        <year>2023</year>
      </pub-date>
      <issue>4</issue>
      <fpage>48</fpage>
      <lpage>60</lpage>
      <self-uri xmlns:xlink="http://www.w3.org/1999/xlink" content-type="pdf" xlink:href="https://jisp.spbstu.ru/userfiles/files/soderzhaniya/2023_4-5-6.pdf"/>
      <abstract xml:lang="en">
        <p>A method of responding to targeted attacks is developed, which is based on the idea of detecting and responding to targeted attacks at the stage of their implementation. The adequacy of application of the developed method in practice is demonstrated.</p>
      </abstract>
      <kwd-group xml:lang="en">
        <kwd>information security</kwd>
        <kwd>information security event</kwd>
        <kwd>information security incident</kwd>
        <kwd>information security monitoring</kwd>
        <kwd>computer attack</kwd>
        <kwd>SIEM-system</kwd>
        <kwd>correlation</kwd>
      </kwd-group>
    </article-meta>
  </front>
</article>
