计算机工程与应用 ›› 2014, Vol. 50 ›› Issue (5): 60-64.

• 网络、通信、安全 • 上一篇    下一篇

基于贝叶斯网络的移动支付风险评估模型

张  璇1,2,林逸风1,白  川1,王  旭3,马暮婷1,于  倩1,2   

  1. 1.云南大学 软件学院,昆明 650091
    2.云南大学 云南省软件工程重点实验室,昆明 650091
    3.云南大学 经济学院,昆明 650091
  • 出版日期:2014-03-01 发布日期:2015-05-12

Risk assessment model for mobile payment based on Bayesian network

ZHANG Xuan1,2, LIN Yifeng1, BAI Chuan1, WANG Xu3, MA Muting1, YU Qian1,2   

  1. 1.School of Software, Yunnan University, Kunming 650091, China
    2.Software Engineering Key Laboratory of  Yunnan, Yunnan University, Kunming 650091, China
    3.School of Economics, Yunnan University, Kunming 650091, China
  • Online:2014-03-01 Published:2015-05-12

摘要: 随着信息技术和网络的迅猛发展,支付业务、技术及工具不断创新,移动支付的发展在逐渐加快。移动支付给人们生活带来方便和快捷的同时,也存在着较高的潜在风险,容易遭受非法入侵和恶意攻击。就移动支付风险的分析及风险值的计算理论方面开展工作,在贝叶斯网络的基础上,针对移动支付的主要组成主体,提出移动支付风险评估模型,通过使用该模型进行移动支付风险评估不仅可以对目前移动支付的风险进行评估,还可以根据风险评估结果引导风险控制,对比风险控制前后的风险值判断风险控制的效果,通过案例分析,提出的移动支付风险评估模型可以很好地完成移动支付的风险评估要求。

关键词: 移动支付, 险评估, 贝叶斯网络

Abstract: With the development of the information technology and the networks, more and more payment businesses, techniques and tools are provided, as one of them, mobile payments are also promoted. Mobile payments make people’s lives easier and faster, however, potential risk, vulnerabilities and malicious attacks are also aroused. In this paper, risk analysis and assessment of mobile payment are presented. Based on Bayesian networks, by analyzing the entities of mobile payment system, it proposes a risk assessment model for mobile payment. By using this model, the risk of mobile payment can be calculated and the result can be used to help proposing risk control solutions. The risk value before and after risk control can be compared to show the feasibility of the risk control solution. The last case study shows that the model meets the needs of risk assessment of mobile payment.

Key words: mobile payment, risk assessment, Bayesian network