A Network Function Virtualization Architecture for Automatic and Efficient Detection and Mitigation against Web Application Malware

被引:0
|
作者
Mauricio, Leopoldo [1 ]
Rubinstein, Marcelo [2 ]
机构
[1] Univ Fed Rio de Janeiro, Av Horacio Macedo,2030,Ctr Tecnol Sala H-301,Cidad, BR-21941598 Rio De Janeiro, RJ, Brazil
[2] Univ Estado Rio de Janeiro, Rio De Janeiro, RJ, Brazil
关键词
Security; Malware; Network Function Virtualization; Software -Defined Networking;
D O I
10.5753/jisa.2023.2847
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
This paper proposes and implements a Network Function Virtualization (NFV) security architecture to provide automatic and efficient detection and mitigation against Web application malware. The mitigation is given by dynamically chaining a Virtual Security Function (VSF) to the data stream to block malicious exploitation traffic without affecting the benign traffic. We implement an NFV Security Controller (NFV-SC) that interacts with an Intrusion Detection System and a Web Application Firewall (WAF), both implemented as VSFs. We also implement a vulnerability scanner and a mechanism to automatically create rules in advance in the WAF-VSF when a security vulnerability is found in an application, even if no malicious traffic has attempted to exploit the flaw. In addition, it dynamically identifies and removes no longer used security rules to improve performance. We implement and evaluate our security proposal in the Open Platform for NFV (OPNFV). The evaluation results in our experimen-tal scenarios show that the NFV security architecture automatically blocks 99.12% of the HTTP malicious traffic without affecting 93.6% of the benign HTTP requests. Finally, we show that the number of rules in the WAF-VSF severely affects the latency to load HTTP response headers and that the number of redirection OpenFlow rules within Open vSwitches is not enough to significantly impact the end-user experience in modern web browser applications.
引用
收藏
页数:11
相关论文
共 50 条
  • [41] Multi-parameter sensitivity analysis of network function virtualization application availability
    Zhu J.
    Huang N.
    Cheng L.
    Xi Tong Gong Cheng Yu Dian Zi Ji Shu/Systems Engineering and Electronics, 2022, 44 (08): : 2677 - 2687
  • [42] Low-Latency and Resource-Efficient Service Function Chaining Orchestration in Network Function Virtualization
    Sun, Gang
    Xu, Zhu
    Yu, Hongfang
    Chen, Xi
    Chang, Victor
    Vasilakos, Athanasios V.
    IEEE INTERNET OF THINGS JOURNAL, 2020, 7 (07): : 5760 - 5772
  • [43] Security Against Network Attacks on Web Application System
    Liu, Yashu
    Wang, Zhihai
    Tian, Shu
    CYBER SECURITY, CNCERT 2018, 2019, 970 : 145 - 152
  • [44] Power Efficient Architecture for Network Intrusion Detection System
    Bontupalli, VenkataRamesh
    Hasan, Raqibul
    Taha, Tarek M.
    IEEE NATIONAL AEROSPACE AND ELECTRONICS CONFERENCE (NAECON 2014), 2014, : 250 - 254
  • [45] Efficient Header Classification Architecture for Network Intrusion Detection
    Hwang, Wen-Jyi
    Ou, Chien-Min
    JOURNAL OF INFORMATION SCIENCE AND ENGINEERING, 2009, 25 (06) : 1839 - 1853
  • [46] DEVELOPMENT OF WEB APPLICATION FOR DETECTION AND MITIGATION OF RISKS OF INFORMATION AND AUTOMATED SYSTEMS
    Boranbayev, A. S.
    Boranbayev, S. N.
    Nurusheva, A. M.
    Yersakhanov, K. B.
    Seitkulov, Y. N.
    EURASIAN JOURNAL OF MATHEMATICAL AND COMPUTER APPLICATIONS, 2019, 7 (01): : 4 - 22
  • [47] REINFORCE: Achieving Efficient Failure Resiliency for Network Function Virtualization-Based Services
    Kulkarni, Sameer G.
    Liu, Guyue
    Ramakrishnan, K. K.
    Arumaithurai, Mayutan
    Wood, Timothy
    Fu, Xiaoming
    IEEE-ACM TRANSACTIONS ON NETWORKING, 2020, 28 (02) : 695 - 708
  • [48] Efficient algorithms to minimize the end-to-end latency of edge network function virtualization
    Ghai, Karanbir Singh
    Choudhury, Salimur
    Yassine, Abdulsalam
    JOURNAL OF AMBIENT INTELLIGENCE AND HUMANIZED COMPUTING, 2020, 11 (10) : 3963 - 3974
  • [49] Efficient algorithms to minimize the end-to-end latency of edge network function virtualization
    Karanbir Singh Ghai
    Salimur Choudhury
    Abdulsalam Yassine
    Journal of Ambient Intelligence and Humanized Computing, 2020, 11 : 3963 - 3974
  • [50] Enhanced Reliability in Network Function Virtualization by Hybrid Hexagon-Cost Efficient Algorithm
    Jeyakumar, D.
    Rajabhushanam, C.
    COMPUTER SYSTEMS SCIENCE AND ENGINEERING, 2022, 43 (03): : 1131 - 1144