AIWAS: The Automatic Identification of Web Attacks System
Toan Huynh and
James Miller
Additional contact information
Toan Huynh: University of Alberta, Canada
James Miller: University of Alberta, Canada
International Journal of Systems and Service-Oriented Engineering (IJSSOE), 2012, vol. 3, issue 1, 73-91
Abstract:
A recent report states that 63 percent of documented vulnerabilities exist in Web applications. Hence, Web applications represent an ideal platform for malicious attackers to target. This paper presents an anomaly intrusion detection system (AIWAS) to help system administrators protect their Web applications from these attacks. AIWAS maps each user’s input into an Instance Model (IM). The IM, which contains attackable features of the input, allows machine learning algorithms to classify the input as either benign or malicious. AIWAS then prevents malicious inputs from reaching the protected Web applications. A case study demonstrates the effectiveness of AIWAS against actual attacks.
Date: 2012
References: Add references at CitEc
Citations:
Downloads: (external link)
http://services.igi-global.com/resolvedoi/resolve. ... 018/jssoe.2012010105 (application/pdf)
Related works:
This item may be available elsewhere in EconPapers: Search for items with the same title.
Export reference: BibTeX
RIS (EndNote, ProCite, RefMan)
HTML/Text
Persistent link: https://EconPapers.repec.org/RePEc:igg:jssoe0:v:3:y:2012:i:1:p:73-91
Access Statistics for this article
International Journal of Systems and Service-Oriented Engineering (IJSSOE) is currently edited by Wuhui Chen
More articles in International Journal of Systems and Service-Oriented Engineering (IJSSOE) from IGI Global
Bibliographic data for series maintained by Journal Editor ().