A Fuzzy Classifier-Based Penetration Testing for Web Applications

被引:10
|
作者
Alhassan, J. K. [1 ]
Misra, Sanjay [2 ]
Umar, A. [1 ]
Maskeliunas, Rytis [3 ]
Damasevicius, Robertas [3 ]
Adewumi, Adewole [2 ]
机构
[1] Fed Univ Technol, Minna, Nigeria
[2] Covenant Univ, Ota, Nigeria
[3] Kaunas Univ Technol, Kaunas, Lithuania
来源
PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON INFORMATION TECHNOLOGY & SYSTEMS (ICITS 2018) | 2018年 / 721卷
关键词
Vulnerabilities assessment; Penetration testing; Fuzzy classifier-based; Web applications;
D O I
10.1007/978-3-319-73450-7_10
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
The biggest challenge of Web application is the inestimable losses arising from security flaws. Two approaches were advanced by a number of scholars to provide security to Web space. One of such approach is vulnerability assessment, which is a conscious effort to isolate, identify and recognize potentials vulnerabilities exploited by attackers. The second being the estimation and determination of level of risks/threats posed to Web applications by vulnerabilities obvious to the developer (or tester); this is generally referred to as penetration testing. Recently, there is Vulnerability Assessment and Penetration Testing (VAPT) that combined these two schemes to improve safety and effectively combat the menace of attackers on Web applications. This paper proposed Fuzzy Classifier-based Vulnerability and Assessment Testing (FCVAPT) model to provide security for sensitive data/information in Web applications. Cross Site Scripting (XSS) and Structured Query Language (SQL) injections were selected for evaluation of proposed FCVAPT model. FCVAPT model's classification performance for MSE, MAPE and RMSE were 33.33, 14.81% and 5.77% respectively. FCVAPT is considerably effective for detecting vulnerability and ascertaining the nature of threats/risks available to Web applications.
引用
收藏
页码:95 / 104
页数:10
相关论文
共 50 条
  • [31] Using Classifier-Based Nominal Imputation to Improve Machine Learning
    Su, Xiaoyuan
    Greiner, Russell
    Khoshgoftaar, Taghi M.
    Napolitano, Amri
    ADVANCES IN KNOWLEDGE DISCOVERY AND DATA MINING, PT I: 15TH PACIFIC-ASIA CONFERENCE, PAKDD 2011, 2011, 6634 : 124 - 135
  • [32] Penetration Testing for Web Services
    Antunes, Nuno
    Vieira, Marco
    COMPUTER, 2014, 47 (02) : 30 - 36
  • [33] A Random Forest classifier-based approach in the detection of abnormalities in the retina
    Chowdhury, Amrita Roy
    Chatterjee, Tamojit
    Banerjee, Sreeparna
    MEDICAL & BIOLOGICAL ENGINEERING & COMPUTING, 2019, 57 (01) : 193 - 203
  • [34] Classifier-Based Pattern Selection Approach for Relation Instance Extraction
    Mandya, Angrosh
    Bollegala, Danushka
    Coenen, Frans
    Atkinson, Katie
    COMPUTATIONAL LINGUISTICS AND INTELLIGENT TEXT PROCESSING (CICLING 2017), PT I, 2018, 10761 : 418 - 434
  • [35] Structured classifier-based dictionary pair learning for pattern classification
    Yu-Hong Cai
    Xiao-Jun Wu
    Zhe Chen
    Tian-Yang Xu
    Pattern Analysis and Applications, 2022, 25 : 425 - 440
  • [36] A Classifier-based approach to identify genetic similarities between diseases
    Schaub, Marc A.
    Kaplow, Irene M.
    Sirota, Marina
    Do, Chuong B.
    Butte, Atul J.
    Batzoglou, Serafim
    BIOINFORMATICS, 2009, 25 (12) : I21 - I29
  • [37] Domain classifier-based transfer learning for visual attention prediction
    Zhiwen Zhang
    Feng Duan
    Cesar F. Caiafa
    Jordi Solé-Casals
    Zhenglu Yang
    Zhe Sun
    World Wide Web, 2022, 25 : 1685 - 1701
  • [38] An Analysis of Tree Topological Features in Classifier-Based Unlexicalized Parsing
    Chan, Samuel W. K.
    Chong, Mickey W. C.
    Cheung, Lawrence Y. L.
    COMPUTATIONAL LINGUISTICS AND INTELLIGENT TEXT PROCESSING, PT I, 2011, 6608 : 155 - +
  • [39] Structured classifier-based dictionary pair learning for pattern classification
    Cai, Yu-Hong
    Wu, Xiao-Jun
    Chen, Zhe
    Xu, Tian-Yang
    PATTERN ANALYSIS AND APPLICATIONS, 2022, 25 (02) : 425 - 440
  • [40] Robustness Analysis of Naive Bayesian Classifier-Based Collaborative Filtering
    Kaleli, Cihan
    Polat, Huseyin
    E-COMMERCE AND WEB TECHNOLOGIES, EC-WEB 2013, 2013, 152 : 202 - 209