Abstract

Security practices such as Audits that often focus on penetration testing are performed to find flaws in some types of vulnerability & use tools, which have been tailored to resolve certain risks based on code errors, code conceptual assumptions bugs, etc. Most existing security practices in e-Commerce are dealt with as an auditing activity. They may have policies of security, which are enforced by auditors who enable a particular set of items to be reviewed, but also fail to find vulnerabilities, which have been established in compliance with application logic. In this paper, we will investigate the problem of business logic vulnerability in the component-based rapid development of e-commerce applications while reusing design specification of component. We propose secure application functional processing Logic Security technique for component-based e-commerce application, based on security requirement of e-business process and security assurance logical component behaviour specification approach to formulize and design a solution for business logic vulnerability phenomena.

Highlights

  • IntroductionApplication Business Logic: The business logic describes the particular “service” (such as Account Service by Account Component’s business logic) offered

  • The violation of Integrity & security within the web software application & components based software that develop rapid business application logic that can be custom-developed/commercial-off-the shelf (COTS), because of flaws at design level in web software application, the use of components based software risks the cause of these logical vulnerabilities can subvert, misuse & circumvent the steps defined by function of the application that is not intended to do described by the function & business process specification [12]

  • Since our main scope of this research study is to focus on investigation web software application logic problems & identify vulnerability that is because of mismatch between business process specification and component ware specification at design/Architecture level while using rapid development business component-based-software approach for business application logic in e-commerce systems

Read more

Summary

Introduction

Application Business Logic: The business logic describes the particular “service” (such as Account Service by Account Component’s business logic) offered. The “Business Process Components” handle the services or transactions that are requested by users through the user interface They determine the operations of the business entity components that must be invoked and the order in which they must be executed. The business application logic represents the functions or services that a particular e-commerce site provides. Modern web applications run large-scale software applications for e-commerce, Information distribution, entertainment, collaborative research work, surveys, & numerous other activities They run distributed hardware platforms & heterogeneous Computer systems.

Nabi et al DOI
Research Design Strategy
Logical Vulnerabilities in Application Layer
Bank Case Study Component-Based-Rapid Development
Existing Methods and Approaches to Application Functional Logic Security
Proposed a Technique Secure Application Functional Processing Logic
Effect of Attacks on System Design
Architectural Risk Analysis for Component-Based Business Logic Security
Designed Defensive Strategy as a Solution to Deal Business Logic Concerns
Lesson Learned
Contribution
Findings
10. Conclusion
Full Text
Published version (Free)

Talk to us

Join us for a 30 min session where you can share your feedback and ask us any queries you have

Schedule a call