<?xml version="1.0" encoding="utf-8"?>
<!DOCTYPE article PUBLIC "-//NLM//DTD JATS (Z39.96) Journal Publishing DTD v1.3 20210610//EN" "https://jats.nlm.nih.gov/publishing/1.3/JATS-journalpublishing1-3.dtd">
<article article-type="research-article" dtd-version="1.3" xml:lang="ru">
  <front xmlns:xlink="http://www.w3.org/1999/xlink">
    <journal-meta>
      <journal-id journal-id-type="elibrary">9004</journal-id>
      <journal-title-group>
        <journal-title>Problems of information security. Computer systems</journal-title>
        <trans-title-group xml:lang="ru">
          <trans-title>Проблемы информационной безопасности. Компьютерные системы</trans-title>
        </trans-title-group>
      </journal-title-group>
      <issn pub-type="epub">2071-8217</issn>
    </journal-meta>
    <article-meta xmlns:xlink="http://www.w3.org/1999/xlink">
      <article-id pub-id-type="publisher-id">13</article-id>
      <article-id pub-id-type="doi">10.48612/jisp/1pk8-r79m-xm3m</article-id>
      <title-group>
        <article-title>Information model for countering the illegal distribution of personal data in information systems</article-title>
        <trans-title-group xml:lang="ru">
          <trans-title>Информационная модель противодействия незаконному распространению персональных данных в информационных системах</trans-title>
        </trans-title-group>
      </title-group>
      <contrib-group>
        <contrib contrib-type="author">
          <contrib-id contrib-id-type="orcid">0009-0007-2389-0789</contrib-id>
          <name>
            <surname>Fokina</surname>
            <given-names>Sofia</given-names>
          </name>
          <xref ref-type="aff" rid="aff1"/>
          <email>sofiya.fockina@gmail.com</email>
        </contrib>
        <contrib contrib-type="author">
          <name>
            <surname>Yakovleva</surname>
            <given-names>Polina</given-names>
          </name>
          <xref ref-type="aff" rid="aff1"/>
          <email>iakovleva.polina16@mail.ru</email>
        </contrib>
        <contrib contrib-type="author">
          <contrib-id contrib-id-type="orcid">0000-0001-6695-2328</contrib-id>
          <name>
            <surname>Garkushev</surname>
            <given-names>Alexander</given-names>
          </name>
          <xref ref-type="aff" rid="aff1"/>
          <email>sangark@mail.ru</email>
        </contrib>
        <contrib contrib-type="author">
          <contrib-id contrib-id-type="orcid">0009-0001-8806-787X</contrib-id>
          <name>
            <surname>Morozova</surname>
            <given-names>Anna</given-names>
          </name>
          <xref ref-type="aff" rid="aff1"/>
          <email>amorozova94@gmail.com</email>
        </contrib>
        <contrib contrib-type="author">
          <contrib-id contrib-id-type="orcid">0000-0001-9665-0128</contrib-id>
          <name>
            <surname>Suprun</surname>
            <given-names>Alexander</given-names>
          </name>
          <xref ref-type="aff" rid="aff2"/>
          <email>afs54@inbox.ru</email>
        </contrib>
      </contrib-group>
      <aff id="aff1">St. Petersburg State Marine Technical University</aff>
      <aff id="aff2">Peter the Great St. Petersburg Polytechnic University</aff>
      <pub-date publication-format="electronic" date-type="pub" iso-8601-date="2025-08-25">
        <day>25</day>
        <month>08</month>
        <year>2025</year>
      </pub-date>
      <issue>Спецвыпуск</issue>
      <fpage>156</fpage>
      <lpage>167</lpage>
      <self-uri xmlns:xlink="http://www.w3.org/1999/xlink" content-type="pdf" xlink:href="https://jisp.spbstu.ru/userfiles/files/soderzhaniya/2025_spetsvipusk-5-6.pdf"/>
      <abstract xml:lang="en">
        <p>The article presents an information model for ensuring the security of personal data in information systems, based on the Secure Remote Password protocol and Russian cryptographic algorithms GOST R34.12-2015 (“Kuznechik”) and GOST 34.11-2018 (“Stribog”). An analysis of threats and vulnerabilities of the information systems, the regulatory framework and modern methods of protecting personal data is carried out. A modular software implementation has been developed that is resistant to the main types of attacks, including traffic interception, man-in-the-middle attacks and database leaks.</p>
      </abstract>
      <kwd-group xml:lang="en">
        <kwd>Personal data</kwd>
        <kwd>information security</kwd>
        <kwd>SRP protocol</kwd>
        <kwd>cryptographic algorithms</kwd>
        <kwd>MITM-attacks</kwd>
        <kwd>data protection</kwd>
      </kwd-group>
    </article-meta>
  </front>
</article>
