Dynamic Web Application Firewall detection supported by Cyber Mimic Defense approach

被引:10
|
作者
Sepczuk, Mariusz [1 ]
机构
[1] Warsaw Univ Technol, Fac Elect & Informat Technol, Warsaw, Poland
关键词
Web Application Firewall; Mimic defense; DHR; Dynamic security; Web application security;
D O I
10.1016/j.jnca.2023.103596
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
With the increase of publicly available applications on the Internet, the number of new vulnerabilities increases. The currently used security methods are static and predictable and therefore have problems detecting unknown vulnerabilities. This issue creates an advantage for attackers - more attacks are carried out successfully than existing countermeasures that protect against them. It can especially be seen when considering the protection provided by Web Application Firewalls (WAF). Namely, it is often enough to obfuscate an attacker's payload to bypass security mechanisms successfully. Of course, many approaches are used to improve the protection provided by WAF, but this is associated with many problems, and a high level of security is expected almost from the moment such a device is deployed. One such approach may be the use of mimic defense, which is a proactive method of detecting unknown attacks. This paper presents the results of experiments in the network with web servers secured by WAF with additional protection provided by the mimic defense idea. The conducted research shows that the usage of mimic defense increases the number of detected and blocked attack attempts. It also introduces the unpredictability that an attacker has to confront when trying to carry out an attack. Moreover, the proposed concept allows for creating new temporary rules that supply the WAF while increasing the chances of detecting previously undiscovered attacks.
引用
收藏
页数:17
相关论文
共 43 条
  • [41] Enhanced dynamic data-driven fault detection approach: application to a two-tank heater system
    Harrou, Fouzi
    Madakyaru, Muddu
    Sun, Ying
    Kammammettu, Sanjula
    2017 IEEE SYMPOSIUM SERIES ON COMPUTATIONAL INTELLIGENCE (SSCI), 2017, : 982 - 987
  • [42] Application of an updated notched beam model using an implicit gradient cracking approach for the purpose of damage detection based on dynamic strains
    Brehm, M.
    Massart, T. J.
    Deraemaeker, A.
    PROCEEDINGS OF INTERNATIONAL CONFERENCE ON NOISE AND VIBRATION ENGINEERING (ISMA2012) / INTERNATIONAL CONFERENCE ON UNCERTAINTY IN STRUCTURAL DYNAMICS (USD2012), 2012, : 807 - 821
  • [43] Automatic detection and quantification of floating marine macro-litter in aerial images: Introducing a novel deep learning approach connected to a web application in R
    Garcia-Garin, Odei
    Monleon-Getino, Toni
    Lopez-Brosa, Pere
    Borrell, Asuncion
    Aguilar, Alex
    Borja-Robalino, Ricardo
    Cardona, Luis
    Vighi, Morgana
    ENVIRONMENTAL POLLUTION, 2021, 273