A Proposal of Algorithm for Web Applications Cyber Attack Detection - Inria - Institut national de recherche en sciences et technologies du numérique Accéder directement au contenu
Communication Dans Un Congrès Année : 2014

A Proposal of Algorithm for Web Applications Cyber Attack Detection

Résumé

Injection attacks (e.g. XSS or SQL) are ranked at the first place in world-wide lists (e.g. MITRE and OWASP). These types of attacks can be easily obfuscated. Therefore it is difficult or even impossible to provide a reliable signature for firewalls that will detect such attacks. In this paper, we have proposed an innovative method for modelling the normal behaviour of web applications. The model is based on information obtained from HTTP requests generated by a client to a web server. We have evaluated our method on CSIC 2010 HTTP Dataset achieving satisfactory results.
Fichier principal
Vignette du fichier
978-3-662-45237-0_61_Chapter.pdf (364.85 Ko) Télécharger le fichier
Origine : Fichiers produits par l'(les) auteur(s)
Loading...

Dates et versions

hal-01405662 , version 1 (30-11-2016)

Licence

Paternité

Identifiants

Citer

Rafał Kozik, Michał Choraś, Rafał Renk, Witold Hołubowicz. A Proposal of Algorithm for Web Applications Cyber Attack Detection. 13th IFIP International Conference on Computer Information Systems and Industrial Management (CISIM), Nov 2014, Ho Chi Minh City, Vietnam. pp.680-687, ⟨10.1007/978-3-662-45237-0_61⟩. ⟨hal-01405662⟩
185 Consultations
1155 Téléchargements

Altmetric

Partager

Gmail Facebook X LinkedIn More