<?xml version="1.0" encoding="utf-8"?>
<!DOCTYPE article PUBLIC "-//NLM//DTD JATS (Z39.96) Journal Publishing DTD v1.3 20210610//EN" "https://jats.nlm.nih.gov/publishing/1.3/JATS-journalpublishing1-3.dtd">
<article article-type="research-article" dtd-version="1.3" xml:lang="en">
  <front xmlns:xlink="http://www.w3.org/1999/xlink">
    <journal-meta>
      <journal-id journal-id-type="elibrary">9004</journal-id>
      <journal-title-group>
        <journal-title>Problems of information security. Computer systems</journal-title>
        <trans-title-group xml:lang="ru">
          <trans-title>Проблемы информационной безопасности. Компьютерные системы</trans-title>
        </trans-title-group>
      </journal-title-group>
      <issn pub-type="epub">2071-8217</issn>
    </journal-meta>
    <article-meta xmlns:xlink="http://www.w3.org/1999/xlink">
      <article-id pub-id-type="publisher-id">3</article-id>
      <article-id pub-id-type="doi">10.48612/jisp/rta5-a8v5-13vu</article-id>
      <title-group>
        <article-title>Presentation of graph-based model for use in automated security analysis systems</article-title>
        <trans-title-group xml:lang="ru">
          <trans-title>Представление данных на основе графа атак для использования в автоматизированных системах анализа защищенности</trans-title>
        </trans-title-group>
      </title-group>
      <contrib-group>
        <contrib contrib-type="author">
          <name>
            <surname>Moskvin</surname>
            <given-names>Dmitry</given-names>
          </name>
          <xref ref-type="aff" rid="aff1"/>
          <email>moskvin_da@spbstu.ru</email>
        </contrib>
        <contrib contrib-type="author">
          <contrib-id contrib-id-type="orcid">0009-0001-1385-8028</contrib-id>
          <name>
            <surname>Orel</surname>
            <given-names>Eugeniy</given-names>
          </name>
          <xref ref-type="aff" rid="aff2"/>
          <email>orel_em@ibks.spbstu.ru</email>
        </contrib>
        <contrib contrib-type="author">
          <contrib-id contrib-id-type="orcid">0009-0006-7223-4326</contrib-id>
          <name>
            <surname>Lyashenko</surname>
            <given-names>Andrey</given-names>
          </name>
          <xref ref-type="aff" rid="aff2"/>
          <email>lyashenko.aa@edu.spbstu.ru</email>
        </contrib>
      </contrib-group>
      <aff id="aff1">Peter the Great St. Petersburg Polytechnic University</aff>
      <aff id="aff2">Peter the Great St. Petersburg Polytechnic University</aff>
      <pub-date publication-format="electronic" date-type="pub" iso-8601-date="2024-03-25">
        <day>25</day>
        <month>03</month>
        <year>2024</year>
      </pub-date>
      <issue>1</issue>
      <fpage>28</fpage>
      <lpage>35</lpage>
      <self-uri xmlns:xlink="http://www.w3.org/1999/xlink" content-type="pdf" xlink:href="https://jisp.spbstu.ru/userfiles/files/soderzhaniya/2024_1_contents_en.pdf"/>
      <abstract xml:lang="en">
        <p>This paper presents a mathematical graph-based model for use in automated security analysis systems. The model allows to link information about the system obtained by a specialist in the process of security analysis with a set of attack scenarios in which it may be involved. Executing 
each scenario results in new portion of data, that describes some system component and contributes to the expansion of the attack graph.</p>
      </abstract>
      <kwd-group xml:lang="en">
        <kwd>attack graph</kwd>
        <kwd>graph-based model</kwd>
        <kwd>security analysis</kwd>
        <kwd>attack scenarios</kwd>
        <kwd>heterogenic systems</kwd>
        <kwd>security assessment</kwd>
        <kwd>penetration testing</kwd>
      </kwd-group>
    </article-meta>
  </front>
</article>
