B2B E-Commerce Security Modeling: A Case Study
Han Zhang, Gerald Weber, William Zhu, Clark D. Thomborson · 2006
We develop a new formalism for the security analysis of business logic. Our formalism can be applied to business logic in its early design stages, after the implementation is complete, or at any intermediate time. We illustrate the use of our formalism in a case study based on an initial design for a B2B e-payment system. Our analysis successfully identifies an operational risk for the trusted intermediate party