Business Logic Vulnerabilities in the Digital Era: A Detection Framework Using Artificial Intelligence.

Uložené v:
Podrobná bibliografia
Názov: Business Logic Vulnerabilities in the Digital Era: A Detection Framework Using Artificial Intelligence.
Autori: Metin, Bilgin1 (AUTHOR), Wynn, Martin2 (AUTHOR) mwynn@glos.ac.uk, Tunalı, Aylin1 (AUTHOR), Kepir, Yağmur1,2 (AUTHOR)
Zdroj: Information. Jul2025, Vol. 16 Issue 7, p585. 22p.
Predmety: *Artificial intelligence, *Computer logic, *Digital technology, *Computer software development, Web-based user interfaces
Abstrakt: Digitalisation can positively impact the efficiency of real-world business processes, but may also introduce new cybersecurity challenges. One area that is particularly vulnerable to cyber-attacks is the business logic embedded in processes in which flaws may exist. This is especially the case when these processes are within web-based applications and services, which is increasingly becoming the norm for many organisations. Business logic vulnerabilities (BLVs) can emerge following the software development process, which may be difficult to detect by vulnerability detection tools. Through a systematic literature review and interviews with industry practitioners, this study identifies key BLV types and the challenges in detecting them. The paper proposes an eight-stage operational framework that leverages Artificial Intelligence (AI) for enhanced BLV detection and mitigation. The research findings contribute to the rapidly evolving theory and practice in this field of study, highlighting the current reliance on manual detection, the contextual nature of BLVs, and the need for a hybrid, multi-layered approach integrating human expertise with AI tools. The study concludes by emphasizing AI's potential to transform cybersecurity from a reactive to a proactive defense against evolving vulnerabilities and threats. [ABSTRACT FROM AUTHOR]
Databáza: Library, Information Science & Technology Abstracts
Popis
Abstrakt:Digitalisation can positively impact the efficiency of real-world business processes, but may also introduce new cybersecurity challenges. One area that is particularly vulnerable to cyber-attacks is the business logic embedded in processes in which flaws may exist. This is especially the case when these processes are within web-based applications and services, which is increasingly becoming the norm for many organisations. Business logic vulnerabilities (BLVs) can emerge following the software development process, which may be difficult to detect by vulnerability detection tools. Through a systematic literature review and interviews with industry practitioners, this study identifies key BLV types and the challenges in detecting them. The paper proposes an eight-stage operational framework that leverages Artificial Intelligence (AI) for enhanced BLV detection and mitigation. The research findings contribute to the rapidly evolving theory and practice in this field of study, highlighting the current reliance on manual detection, the contextual nature of BLVs, and the need for a hybrid, multi-layered approach integrating human expertise with AI tools. The study concludes by emphasizing AI's potential to transform cybersecurity from a reactive to a proactive defense against evolving vulnerabilities and threats. [ABSTRACT FROM AUTHOR]
ISSN:20782489
DOI:10.3390/info16070585