SOA and Web Services:: New technologies, new standards -: New attacks

被引:30
|
作者
Jensen, Meiko [1 ]
Gruschka, Nils [1 ]
Herkenhoener, Ralph [1 ]
Luttenberger, Norbert [1 ]
机构
[1] Univ Kiel, Dept Comp Sci, Commun Syst Res Grp, D-24098 Kiel, Germany
关键词
D O I
10.1109/ECOWS.2007.9
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Being regarded as the new paradigm for Internet communication, Web Services have introduced a large number of new standards and technologies. Though founding on decades of networking experience, Web Services are not more resistant to security attacks than other open network systems. Quite the opposite is true: Web Services are exposed to attacks well-known from common Internet protocols and additionally to new kinds of attacks targeting Web Services in particular. Along with their severe impact, most of these attacks can be performed with minimum effort from the attacker's side. In this paper we present a list of vulnerabilities in the context of Web Services. To proof the practical relevance of the threats, we performed exemplary attacks on widespread Web Service implementations. Further, general countermeasures for prevention and mitigation of such attacks are discussed.
引用
收藏
页码:35 / 44
页数:10
相关论文
共 50 条
  • [1] New Technologies Present New Challenges for Standards
    Sindel, Allen W.
    [J]. WELDING JOURNAL, 2014, 93 (03) : 4 - 4
  • [2] Brave new web: Emerging design principles and technologies as enablers of a global SOA
    Schroth, Christoph
    Christ, Oliver
    [J]. 2007 IEEE INTERNATIONAL CONFERENCE ON SERVICES COMPUTING, PROCEEDINGS, 2007, : 597 - +
  • [3] SOA: New Era of Telco Services
    Jing Yang (UTStarcom (China) Co.
    [J]. ZTE Communications, 2008, 6 (04) : 35 - 38
  • [4] NEC's new services and technologies in the web 2.0 age
    Shiraishi, Nobuhisa
    [J]. NEC TECHNICAL JOURNAL, 2007, 2 (02): : 42 - 45
  • [5] ROLE OF STANDARDS ON NEW TECHNOLOGIES
    IRMER, T
    BIGI, F
    [J]. TELECOMMUNICATION JOURNAL, 1991, 58 (11): : 803 - 809
  • [6] New Technologies and New Broadcasting Services.
    Mueller-Roemer, Frank
    [J]. Technische Mitteilungen PTT (Post-, Telefon- und Telegrafenbetrieben), 1982, 60 (01): : 46 - 49
  • [7] BANKING SERVICES - NEW TECHNOLOGIES, NEW APPROACHES
    WEISS, U
    [J]. SIEMENS REVIEW, 1983, 50 (06): : 2 - 4
  • [8] New technologies of Web GIS
    Fu, Yuchen
    Zhou, Dongru
    [J]. Jisuanji Gongcheng/Computer Engineering, 2004, 30 (03):
  • [9] New imaging technologies on the Web
    Malik, P
    [J]. CANADIAN JOURNAL OF CARDIOLOGY, 1998, 14 (07) : 893 - 894
  • [10] NEW WEB TECHNOLOGIES FOR ASTRONOMY
    Sprimont, P-G.
    Ricci, D.
    Nicastro, L.
    [J]. III WORKSHOP ON ROBOTIC AUTONOMOUS OBSERVATORIES, 2014, 45 : 75 - 78