Cloud storage service reduces the burden of data users by storing users' data files in the cloud. But, the files might be modified in the cloud. So, data users hope to check data files integrity periodically. In a pu...Cloud storage service reduces the burden of data users by storing users' data files in the cloud. But, the files might be modified in the cloud. So, data users hope to check data files integrity periodically. In a public auditing protocol, there is a trusted auditor who has certain ability to help users to check the integrity of data files. With the advantages of no public key management and verification, researchers focus on public auditing protocol in ID-based cryptography recently. However, some existing protocols are vulnerable to forgery attack. In this paper, based on ID-based signature technology, by strengthening information authentication and the computing power of the auditor, we propose an ID-based public auditing protocol for cloud data integrity checking. We also prove that the proposed protocol is secure in the random oracle model under the assumption that the Diffie-Hellman problem is hard. Furthermore, we compare the proposed protocol with other two ID-based auditing protocols in security features, communication efficiency and computation cost. The comparisons show that the proposed protocol satisfies more security features with lower computation cost.展开更多
在数字化转型背景下,传统财务审计模式受限于数据孤岛与流程滞后,难以应对复杂经济场景的需求。研究整合区块链与人工智能物联网(Artificial Intelligence&Internet of Things,AIoT)技术,构建分布式财务审计系统框架。实证分析显示...在数字化转型背景下,传统财务审计模式受限于数据孤岛与流程滞后,难以应对复杂经济场景的需求。研究整合区块链与人工智能物联网(Artificial Intelligence&Internet of Things,AIoT)技术,构建分布式财务审计系统框架。实证分析显示,该系统显著提升审计效率,并借助链上数据不可篡改特性将人为舞弊风险降低至5%以下,尤其在供应链金融与跨国税务稽查场景中展现出强适应性。展开更多
随着 Internet 的普及,Web 应用系统安全问题日益严重,而安全审计是保障信息系统安全的重要措施。可视化安全审计作为一种新的安全审计手段,有助于安全管理员充分理解主体行为,但在 Web 系统中却因运行效率等原因导致应用受到限制。本...随着 Internet 的普及,Web 应用系统安全问题日益严重,而安全审计是保障信息系统安全的重要措施。可视化安全审计作为一种新的安全审计手段,有助于安全管理员充分理解主体行为,但在 Web 系统中却因运行效率等原因导致应用受到限制。本文定义了多层用户行为模型,以此模型作为 Web 安全审计的基础,并针对该行为模型提出了基于 SOM 的可视化算法。该算法将 Web 审计数据转换为形象的可视化信息,并且允许安全管理员对可视信息进行交互操作,进一步探索 Web 审计数据的内在关联,从而在保证可视化效果的同时,还可大幅提高安全审计的效率。展开更多
应用CiteSpace 5.1对1990—2019年Web of Science数据库和中国知网数据库的国内外技术创新审计相关研究文献进行分析。结果表明:国外技术创新审计研究可划分为理论研究阶段和实践应用阶段;国内技术创新审计研究可划分为理论启发阶段、...应用CiteSpace 5.1对1990—2019年Web of Science数据库和中国知网数据库的国内外技术创新审计相关研究文献进行分析。结果表明:国外技术创新审计研究可划分为理论研究阶段和实践应用阶段;国内技术创新审计研究可划分为理论启发阶段、实践探索阶段和信息技术应用探索阶段。未来国内技术创新审计的研究方向可以从构建中国特色理论框架,拓宽研究视野、加强国际合作,深化技术创新审计在各领域实践应用,加强研究大数据时代下技术创新审计信息化建设以及建立创新审计信息平台这5个方面入手。展开更多
基金Supported by the Applied Basic and Advanced Technology Research Programs of Tianjin(15JCYBJC15900)the National Natural Science Foundation of China(51378350)
文摘Cloud storage service reduces the burden of data users by storing users' data files in the cloud. But, the files might be modified in the cloud. So, data users hope to check data files integrity periodically. In a public auditing protocol, there is a trusted auditor who has certain ability to help users to check the integrity of data files. With the advantages of no public key management and verification, researchers focus on public auditing protocol in ID-based cryptography recently. However, some existing protocols are vulnerable to forgery attack. In this paper, based on ID-based signature technology, by strengthening information authentication and the computing power of the auditor, we propose an ID-based public auditing protocol for cloud data integrity checking. We also prove that the proposed protocol is secure in the random oracle model under the assumption that the Diffie-Hellman problem is hard. Furthermore, we compare the proposed protocol with other two ID-based auditing protocols in security features, communication efficiency and computation cost. The comparisons show that the proposed protocol satisfies more security features with lower computation cost.
文摘在数字化转型背景下,传统财务审计模式受限于数据孤岛与流程滞后,难以应对复杂经济场景的需求。研究整合区块链与人工智能物联网(Artificial Intelligence&Internet of Things,AIoT)技术,构建分布式财务审计系统框架。实证分析显示,该系统显著提升审计效率,并借助链上数据不可篡改特性将人为舞弊风险降低至5%以下,尤其在供应链金融与跨国税务稽查场景中展现出强适应性。
文摘随着 Internet 的普及,Web 应用系统安全问题日益严重,而安全审计是保障信息系统安全的重要措施。可视化安全审计作为一种新的安全审计手段,有助于安全管理员充分理解主体行为,但在 Web 系统中却因运行效率等原因导致应用受到限制。本文定义了多层用户行为模型,以此模型作为 Web 安全审计的基础,并针对该行为模型提出了基于 SOM 的可视化算法。该算法将 Web 审计数据转换为形象的可视化信息,并且允许安全管理员对可视信息进行交互操作,进一步探索 Web 审计数据的内在关联,从而在保证可视化效果的同时,还可大幅提高安全审计的效率。
文摘应用CiteSpace 5.1对1990—2019年Web of Science数据库和中国知网数据库的国内外技术创新审计相关研究文献进行分析。结果表明:国外技术创新审计研究可划分为理论研究阶段和实践应用阶段;国内技术创新审计研究可划分为理论启发阶段、实践探索阶段和信息技术应用探索阶段。未来国内技术创新审计的研究方向可以从构建中国特色理论框架,拓宽研究视野、加强国际合作,深化技术创新审计在各领域实践应用,加强研究大数据时代下技术创新审计信息化建设以及建立创新审计信息平台这5个方面入手。