Skip to main content Skip to main navigation menu Skip to site footer
##common.pageHeaderLogo.altText##
Izvestiya SFedU
Engineering sciences
  • Current
  • Previous issues
    • Archive
    • Issues 1995 – 2019
  • Editorial Board
  • About journal
    • Officially
    • The main tasks
    • Main sections
    • Specialties of the Higher Attestation Commission of the Russian Federation
    • Editor-in-Chief
ISSN 1999-9429 print
ISSN 2311-3103 online
  • Login
  1. Home /
  2. Search

Search

Advanced filters
Published After
Published Before

Search Results

Found one item.
  • AUTOMATION OF THE USE OF FALSE COMPONENTS IN THE INFORMATION SYSTEM

    S.А. Smirnov, N.Y. Parotkin, V. V. Zolotarev
    2025-01-14
    Abstract ▼

    The article considers the applicability of deceptive information systems and their components in
    building an automated system for deploying and managing the applied implementation of deceptive component
    technology to improve the attack prevention system. The main advantages and the role of technology
    in the information security strategy setting the specifics and the area of technology means and tools
    practical appliance are suggested. The article considers the fundamentals of the architecture and features
    of the technology application, as well as its limitations. The purpose and the objective of using the present
    technology is pointed in terms of key principles of implementation disclosure. In addition, regulatory publications
    and other recommendations constituting the best practices in the field of its use were analyzed.
    The concept and architecture of the final automated solution for integration into information systems and
    security systems are considered, and the functional content of the final solution is described. A distinctive
    feature of the proposed solution is the use of controlled containerization mechanisms, that provide ample
    opportunities for scaling the solution and isolating compromised system components as a result of an
    intruder's actions. A formulated process of the automation system practical implementation in perspective
    of solution subsystems is schematically described in relation to dependent components (such as suggested
    document pieces and outer tools and systems) and included operations processing conditions. A model of
    deployment and operation of a distributed automation system is also provided in the following sequence:
    setting up a deployment server (including provisioning), deploying a network of false decoy components
    based on containerization, deploying external baits, integrating with systems and instances of the information
    security stack external to the composition of the solution. The solution is implemented by means of
    the principle: fake assets and resources of the fictive environment are deployed in an information technology
    infrastructure using controls and are intended to be affected by the adversary. The deployed set of
    subsystem tools was tested using a third-party node with the appropriate tools and scanning scenarios.
    Recommendations are given for further improvement of the automation system for deployment and management
    of tools and measures for deceptive component technology.

1 - 1 of 1 items

links

For authors
  • Submit article
  • Author Guidelines
  • Editorial Policy
  • Reviewing
  • Ethics of scientific publications
  • Open access policy
  • Supporting documents
Language
  • English
  • русский

journal

* not an advertisement

index

Индексация журнала
* not an advertisement
Information
  • For Readers
  • For Authors
  • For Librarians
Address: 347900, Taganrog, Chekhov St., 22, A-211 Phone: +7 (8634) 37-19-80 E-mail: iborodyanskiy@sfedu.ru
Publication is free
More information about the publishing system, Platform and Workflow by OJS/PKP.
logo Developed by RDCenter