E-commerce is an important system in the network and digital age. However, the network intrusion, malicious users, virus attack and system security vulnerabilities have continued to threaten the operation of the e-commerce, making e-commerce security encounter serious test. How to improve e-commerce security has become a topic worthy of further exploration. Combining data logging, event monitoring and cloud computing three technologies, this paper proposes a Cloud-based Security Event Detection Mechanism (CSEDM). Applying the CSEDM, security event detection procedure can timely detect security event, and assist follow repair. CSEDM can enhance e-commerce security effectively and reduce e-commerce security risk.
Schuman, E. ( 2006), Gartner: $ 2 Billion in E-Commerce Sales Lost Because of Security Fears, 2006/11/27-pcmag (http://www.pcmag.com/article2/0,2817,2064021,00.asp)
自由時報電子報 ( 2011),「SONY又出包 已逾1億人個資外洩」,2011/05/04-。(http://www.libertytimes.com.tw/2011/new/may/4/today-int10.htm)
2012中華民國電子商務年鑑( 2011),「我國電子商務發展狀況」,2011 年10 月。(http://ecommercetaiwan.blogspot.tw/2012/10/blog-post_29.html)。
104 市調中心 ( 2010),「八成民眾,擔心網路購物遇到【詐騙事件】」,2010 年04月。( http://www.104survey.com/faces/newportal/viewPointCtx.xhtml)
SANS Top- 20 Security Risks ( 2013) ( http://www.sans.org/critical-security-controls/)
中央通訊社 ( 2013),「資策會強化企業雲端伺服器共識」,2013 年11 月。
鉅亨網 ( 2013),「資策會CAFÉ 雲端新品發表鎖定企業雲端三大服務商機」,2013 年4 月。
OWASP Top 10 ( 2013) (https://www.owasp.org/index.php/Top_10_2013-Table_of_Contents)
今日新聞網 ( 2012),「Visa、萬事達卡遭駭 台灣百張信用卡遭駭、已通知換卡」,2012/ 03/ 3。(http://www.nownews.com/2012/03/31/320-2800410.htm#ixzz2ZTZOAQFe)
李思萱 ( 2013),「全球電子商務銷售首度超越 1 兆美元,預測2013 亞太區銷售超越北美」,2013/ 02/ 07-DIGITIMES,中文網。(http://www.digitimes.com.tw/tw/dt/n/shwnws.asp)
資安人科技網 ( 2012)「韓國個資法第一起判例 100萬韓圜開罰」,2012/ 05– Information Security (http://www.informationsecurity.com.tw/article/article_detail.aspx?aid= 6732#ixzz 2ZTXVjkUT)
Dean, J.,Ghemawat, S.(2008).Mapreduce: simplified data processing on large clusters.CACM,51(1),107-113.
Dean, J.,Ghemawat, S.(2010).MapReduce: A Flexible Data Processing Tool.CACM,53(1),72-77.
Gupta, S.(2012).,SANS Institute InfoSec Reading Room.
Holcombe, C.(2007).Advanced Guide to eCommerce.LitLangs Publishing.
Kent, K.,Souppaya, M.(2006).Guide to Computer Security Log Management.National Institute of Standards and Technology (NIST) Publication.
Yan, C.,Yang, X.,Yu, Z,Li, M.,Li, X.(2012).IncMR : Incremental data processing based on MapReduce.Proceedings of the 2012 IEEE Fifth Conference on Cloud Computing (CLOUD'12)
賴森堂(2012)。以弱點掃描結合修補函數提昇Web App 安全品質。電腦稽核,25,158-168。