Computer Engineering and Applications ›› 2009, Vol. 45 ›› Issue (7): 123-126.DOI: 10.3778/j.issn.1002-8331.2009.07.038

• 网络、通信、安全 • Previous Articles     Next Articles

Information security risk assessment system considering information content

YAO Zheng-lin1,TAN Jian-long2,SUN Shou-guang1   

  1. 1.School of Mechanical Electronic and Control Engineering,Beijing Jiaotong University,Beijing 100044,China
    2.Institute of Computing Technology,Chinese Academy of Sciences,Beijing 100080,China
  • Received:2008-01-17 Revised:2008-04-17 Online:2009-03-01 Published:2009-03-01
  • Contact: YAO Zheng-lin

一种结合内容的网站信息安全风险评估系统

姚正林1,谭建龙2,孙守光1   

  1. 1.北京交通大学 机械与电子控制工程学院,北京 100044
    2.中国科学院 计算技术研究所,北京 100080
  • 通讯作者: 姚正林

Abstract: Common risk assessment concern mostly the risk of material assets,and risk assessment on the website,the risk factor of website’s information content there is no single design.This paper presents a risk assessment scheme that consider the information content of website and common assets and the risk assessment of the information content of website has certain special characteristics.An algorithm of the design of an information content of website risk calculation is introduced.At the same time,this paper describes a practical site information security risk assessment system.For the site risk assessment combine a questionnaire and automatic scanning,it will get a good practical results.

摘要: 在目前使用的网站信息安全风险评估系统中,结合内容安全方面的评估是比较欠缺的。针对这一问题,提出了一种结合内容安全的评估方案,并提出了网页内容风险计算方法。同时很好地结合了问卷方式和自动扫描方式,实现了一个面向网站信息内容安全的风险评估系统,具有比较好的实际效果。