A Proposal of Algorithm for Web Applications Cyber Attack Detection - Computer Information Systems and Industrial Management
Conference Papers Year : 2014

A Proposal of Algorithm for Web Applications Cyber Attack Detection

Abstract

Injection attacks (e.g. XSS or SQL) are ranked at the first place in world-wide lists (e.g. MITRE and OWASP). These types of attacks can be easily obfuscated. Therefore it is difficult or even impossible to provide a reliable signature for firewalls that will detect such attacks. In this paper, we have proposed an innovative method for modelling the normal behaviour of web applications. The model is based on information obtained from HTTP requests generated by a client to a web server. We have evaluated our method on CSIC 2010 HTTP Dataset achieving satisfactory results.
Fichier principal
Vignette du fichier
978-3-662-45237-0_61_Chapter.pdf (364.85 Ko) Télécharger le fichier
Origin Files produced by the author(s)
Loading...

Dates and versions

hal-01405662 , version 1 (30-11-2016)

Licence

Identifiers

Cite

Rafał Kozik, Michał Choraś, Rafał Renk, Witold Hołubowicz. A Proposal of Algorithm for Web Applications Cyber Attack Detection. 13th IFIP International Conference on Computer Information Systems and Industrial Management (CISIM), Nov 2014, Ho Chi Minh City, Vietnam. pp.680-687, ⟨10.1007/978-3-662-45237-0_61⟩. ⟨hal-01405662⟩
208 View
1217 Download

Altmetric

Share

More