Information Security System of the Digital Payments Ecosystem: Optimization of Protection Measures

Alexander Olifirov, Krystina Makoveichuk, Nikita Potapovich

Abstract


The article proposes an incremental approach to the optimization of protection measures of digital payment ecosystems. It is established that the basis for the development of national economies are information and digital technologies, distributed ledger system and platform solutions, which form new technological ecosystems. It is shown that in modern conditions payment ecosystems are transformed to work with digital national currencies. It is noted that the main problem of realizing the concept of central bank digital currency is to ensure information security of its ecosystem. The target model of creation and use of the payment ecosystem of digital currency of the central bank is defined. The model of payment ecosystem based on payment transaction template is proposed. It is shown that as a result of decomposition based on the incremental approach, it is possible to identify threats and defense measures for each sub-template and each target class of the payment ecosystem of central bank digital currency, that is, it is possible to investigate how each element and service of the CBDC payment ecosystem can be attacked and how this attack can be deflected and weakened. An economic and mathematical model is constructed to optimize the resulting complete set of protection measures for the digital payment ecosystem.

 


Full Text:

PDF (Russian)

References


Barabanov A.V., Dorofeev A.V., Markov A.S., Cirlov V.L. Sem` bezopasny`x informacionny`x texnologij / Pod. red. A.S.Markova. M.: DMK Press, 2017. 224 s. (In Russian)

Miloslavskaya N.G., Tolstoj A.I. Upravlenie informacionnoj bezopasnost`yu. M.: NIYaU MIFI, 2020. – 536 s. (In Russian)

Olifirov A., Makoveichuk K., Petrenko S. Cybersecurity measures of the digital payment ecosystem. In Selected Papers of 11th International Scientific and Technical Conference on Secure Information Technologies (BIT 2021). CEUR Workshop Proceedings, 2021, Vol-3035, pp. 133-142.

Brantly, A. F. Risk and uncertainty can be analyzed in cyberspace, Journal of Cybersecurity, volume 7, issue 1, 2021, tyab001. DOI: 10.1093/cybsec/tyab001.

Yu, H., Hsi, K., & Kuo, P. (2002). Electronic payment systems: an analysis and comparison of types. Technology in Society, 24, pp. 331-347. DOI: 10.1016/S0160-791X(02)00012-X.

Raharja, S. U. J., Muhyi, H. A., Herawaty, T. Digital payment as an enabler for business opportunities: A go-pay case study. Review of Integrative Business and Economics Research, 9(1) (2020), pp. 319-329. URL: http://buscompress.com/uploads/3/4/9/8/34980536/riber_9-s1_25_b19-102_319-329.pdf.

Staykova, Kalina & Damsgaard, Jan. (2016). Adoption of Mobile Payment Platforms: Managing Reach and Range. Journal of theoretical and applied electronic commerce research, 11(3), pp. 66-85. DOI: 10.4067/S0718-18762016000300006.

E`kosistemy`: podxody` k regulirovaniyu. Doklad dlya obshhestvenny`x konsul`tacij, Moskva, 2021. https://www.cbr.ru/Content/Document/File/119960/Consultation_Paper_02042021.pdf. (In Russian)

Khomenko E.G. Electronic payment systems in Russia and in foreign countries. Actual Problems of Russian Law, 2019, (8):159-164. https://doi.org/10.17803/1994-1471.2019.105.8.159-164. (In Russian)

Lin, Wan R., Lin, C.-H., & Ding, Y.-H. (2020). Factors affecting the behavioral intention to adopt mobile payment: An empirical study in Taiwan. Mathematics, 8(10), 1851. https://doi. org/10.3390/math8101851

"Koncepciya cifrovogo rublya" (podgotovlena Bankom Rossii). – URL: http://www.consultant.ru/document/cons_doc_LAW_381918/ (data obrashheniya: 01.09.2021).

Maslennikov V.V., Larionov A.V. Digital Currencies: Conceptualization of Risks and Regulatory Opportunities. The world of new economy, 2021, 15(4):16-28. https://doi.org/10.26794/2220-6469-2021-15-4-16-28. (In Russian)

Agur I., Lavayssière X., Bauer G. V., Deodoro J., Peria S. M., Sandri D., Tourpe H. Lessons from crypto assets for the design of energy efficient digital currencies. Ecological Economics, 2023, Vol-212. https://doi.org/10.1016/j.ecolecon.2023.107888.

Gilbert S., Loi H. Digital Currency Risk. International Journal of Economics and Finance, 2018, Vol-10, No. 2. DOI: 10.5539/ijef.v10n2p108.

Olifirov A.V., Makoveichuk K.A., Petrenko S.A. Integration of cyber security into the Smart Grid operational risk management system. In Selected Papers of the 4th All-Russian Scientific and Practical Conference with International Participation "Information Systems and Technologies in Modeling and Control" (ISTMC 2019). CEUR Workshop Proceedings, 2019, Vol-2522, pp. 132-144. URL: https://ceur-ws.org/Vol-2522/paper14.pdf.

Petrenko, A. A., Petrenko, S. A., Makoveichuk, K. A., Olifirov, A. V. Methodological recommendations for the cyber risks management, CEUR Workshop Proceedings, 2021, Vol-2914, pp. 234-247. URL: http://ceur-ws.org/Vol-2914/paper20.pdf.

Petrenko, S., Petrenko, A., Makoveichuk, K.A., Olifirov, A. (2021). Development of a Cyber-Resistant Platform for the Internet of Things Based on Dynamic Control Technology. In: Singh, P.K., Veselov, G., Vyatkin, V., Pljonkin, A., Dodero, J.M., Kumar, Y. (eds) Futuristic Trends in Network and Communication Technologies. FTNCT 2020. Communications in Computer and Information Science, vol 1395. Springer, Singapore. https://doi.org/10.1007/978-981-16-1480-4_13.

Petrenko, S. A., Makoveichuk, K. A., Olifirov, A. V. Concept of cyber immunity of industry 4.0. CEUR Workshop Proceedings, 2019, Vol-2603, pp. 93-99. URL: http://ceur-ws.org/Vol2603/paper20.pdf.

Petrenko, S., Makoveichuk, K., Olifirov, A. (2020). New Methods of the Cybersecurity Knowledge Management Analytics. In: Sukhomlin, V., Zubareva, E. (eds) Convergent Cognitive Information Technologies. Convergent 2018. Communications in Computer and Information Science, vol 1140. Springer, Cham. https://doi.org/10.1007/978-3-030-37436-5_27.

Bank Rossii. Osnovny`e tipy` komp`yuterny`x atak v kreditno-finansovoj sfere v 2019–2020 godax. Moskva, 2021, URL: https://www.cbr.ru/Collection/Collection/File/32122/Attack_2019-2020.pdf. (In Russian)

Boholm, M. Twenty-five years of cyber threats in the news: a study of Swedish newspaper coverage (1995–2019), Journal of Cybersecurity, Volume 7, Issue 1, 2021, tyab016, https://doi.org/10.1093/cybsec/tyab016.

Agrafiotis. I., Nurse, J. R. C., Goldsmith M., Creese, S., Upton, D, A taxonomy of cyber-harms: Defining the impacts of cyber-attacks and understanding how they propagate, Journal of Cybersecurity, Volume 4, Issue 1, 2018, tyy006, https://doi.org/10.1093/cybsec/tyy006.

Yankovskij R. M. Kriptovalyuty` v rossijskom prave: surrogaty`, "inoe imushhestvo" i cifrovy`e den`gi // Pravo. Zhurnal Vy`sshej shkoly` e`konomiki. 2020. № 4. URL: https://cyberleninka.ru/article/n/kriptovalyuty-v-rossiyskom-prave-surrogaty-inoe-imuschestvo-i-tsifrovye-dengi. (In Russian)

Bauer V.P., Smirnov V.V. Institutional Features of the Development of Competitive Cryptocurrency. Finance: Theory and Practice. 2020;24(5):84-99. https://doi.org/10.26794/2587-5671-2020-24-5-84-99. (In Russian)

Courtier, P., Thépaut, J.-N., Hollingsworth, A. A strategy for operational implementation of 4D-Var, using an incremental approach. Quarterly Journal of the Royal Meteorological Society, 1994, Vol-120, Issue 519, pp. 1367-1387. https://doi.org/10.1002/qj.49712051912.

Sun, P., Li, X., & Ting, M. Y. Efficient incremental analysis of on-chip power grid via sparse approximation. In Proceedings - Design Automation Conference, 2011, pp. 676–681. https://doi.org/10.1145/2024724.2024878.

Olifirov, A. V. Modeli upravleniya riskami e`konomicheskix informacionny`x sistem / A. V. Olifirov // Informacionny`e sistemy` i texnologii v modelirovanii i upravlenii : Materialy` vserossijskoj nauchno-prakticheskoj konferencii, Yalta, 05–07 iyulya 2017 goda / Otvetstvenny`x redaktor N.N. Olejnikov. – Yalta: Obshhestvo s ogranichennoj otvetstvennost`yu «Izdatel`stvo Tipografiya «Arial», 2017. – S. 465-470. – EDN YYVSVL. (In Russian)

Olifirov, A. V. Organizacionno-texnicheskie mery` informacionnoj bezopasnosti cifrovoj valyuty` central`nogo banka / A. V. Olifirov, K. A. Makovejchuk // Bezopasny`e informacionny`e texnologii : Sbornik trudov Dvenadczatoj mezhdunarodnoj nauchno-texnicheskoj konferencii, Moskva, 01–02 noyabrya 2023 goda. – Moskva: Moskovskij gosudarstvenny`j texnicheskij universitet imeni N.E`. Baumana (nacional`ny`j issledovatel`skij universitet), 2023. – S. 124-129. – EDN DGWFIV. (In Russian)


Refbacks

  • There are currently no refbacks.


Abava  Кибербезопасность IT Congress 2024

ISSN: 2307-8162