Matches in SemOpenAlex for { <https://semopenalex.org/work/W3133145853> ?p ?o ?g. }
Showing items 1 to 76 of
76
with 100 items per page.
- W3133145853 abstract "Web servers in the Internet are vulnerable to Web attacks. A general way to launch Web attacks is to carry attack payloads in HTTP request parameters, e.g. SQL Injection and XSS attacks. To detect Web attacks, a commonly used method is to detect anomalies in the request parameters by making regular-expression-based matching rules for the parameters based on known security threats. However, such methods cannot detect unknown anomalies well and they can also be easily bypassed by using techniques like transcoding. Moreover, existing anomaly detection methods are usually based on supervised learning methods that require a large number of high-quality labelled samples as training sets, which are difficult to obtain in real situations. In this paper, we propose an unsupervised HTTP Request Parameter Anomaly Detection method called RPAD. RPAD uses five features of HTTP request parameters to perform anomaly detection including type, length, number of tokens, encoding type and character feature. After extracting the five features, RPAD uses the DBSCAN algorithm to cluster the parameters of each target access request and outputs the outliers found in the clustering process as anomalies. We evaluate the performance of RPAD on several datasets from multiple real websites of a Cyber Security Company. The results indicate that RPAD is highly efficient in detecting deviating abnormal parameter values with an accuracy of 99%." @default.
- W3133145853 created "2021-03-01" @default.
- W3133145853 creator A5005250767 @default.
- W3133145853 creator A5008410674 @default.
- W3133145853 creator A5042797969 @default.
- W3133145853 creator A5045965538 @default.
- W3133145853 creator A5057734554 @default.
- W3133145853 creator A5077114895 @default.
- W3133145853 date "2020-12-01" @default.
- W3133145853 modified "2023-09-24" @default.
- W3133145853 title "RPAD: An Unsupervised HTTP Request Parameter Anomaly Detection Method" @default.
- W3133145853 cites W1963563131 @default.
- W3133145853 cites W1993426957 @default.
- W3133145853 cites W2038571043 @default.
- W3133145853 cites W2142937603 @default.
- W3133145853 cites W2296719434 @default.
- W3133145853 cites W2559611555 @default.
- W3133145853 cites W2765716846 @default.
- W3133145853 cites W2766684344 @default.
- W3133145853 cites W2793171130 @default.
- W3133145853 cites W2797283471 @default.
- W3133145853 cites W2799306672 @default.
- W3133145853 cites W2923945907 @default.
- W3133145853 cites W4253289766 @default.
- W3133145853 cites W4254182148 @default.
- W3133145853 doi "https://doi.org/10.1109/trustcom50675.2020.00163" @default.
- W3133145853 hasPublicationYear "2020" @default.
- W3133145853 type Work @default.
- W3133145853 sameAs 3133145853 @default.
- W3133145853 citedByCount "1" @default.
- W3133145853 countsByYear W31331458532022 @default.
- W3133145853 crossrefType "proceedings-article" @default.
- W3133145853 hasAuthorship W3133145853A5005250767 @default.
- W3133145853 hasAuthorship W3133145853A5008410674 @default.
- W3133145853 hasAuthorship W3133145853A5042797969 @default.
- W3133145853 hasAuthorship W3133145853A5045965538 @default.
- W3133145853 hasAuthorship W3133145853A5057734554 @default.
- W3133145853 hasAuthorship W3133145853A5077114895 @default.
- W3133145853 hasConcept C104047586 @default.
- W3133145853 hasConcept C124101348 @default.
- W3133145853 hasConcept C154945302 @default.
- W3133145853 hasConcept C17212007 @default.
- W3133145853 hasConcept C35525427 @default.
- W3133145853 hasConcept C41008148 @default.
- W3133145853 hasConcept C46576248 @default.
- W3133145853 hasConcept C73555534 @default.
- W3133145853 hasConcept C739882 @default.
- W3133145853 hasConcept C8038995 @default.
- W3133145853 hasConceptScore W3133145853C104047586 @default.
- W3133145853 hasConceptScore W3133145853C124101348 @default.
- W3133145853 hasConceptScore W3133145853C154945302 @default.
- W3133145853 hasConceptScore W3133145853C17212007 @default.
- W3133145853 hasConceptScore W3133145853C35525427 @default.
- W3133145853 hasConceptScore W3133145853C41008148 @default.
- W3133145853 hasConceptScore W3133145853C46576248 @default.
- W3133145853 hasConceptScore W3133145853C73555534 @default.
- W3133145853 hasConceptScore W3133145853C739882 @default.
- W3133145853 hasConceptScore W3133145853C8038995 @default.
- W3133145853 hasFunder F4320321001 @default.
- W3133145853 hasLocation W31331458531 @default.
- W3133145853 hasOpenAccess W3133145853 @default.
- W3133145853 hasPrimaryLocation W31331458531 @default.
- W3133145853 hasRelatedWork W1706668261 @default.
- W3133145853 hasRelatedWork W2103330636 @default.
- W3133145853 hasRelatedWork W2149686398 @default.
- W3133145853 hasRelatedWork W2352487104 @default.
- W3133145853 hasRelatedWork W2390710607 @default.
- W3133145853 hasRelatedWork W2751974360 @default.
- W3133145853 hasRelatedWork W2754867770 @default.
- W3133145853 hasRelatedWork W3015348658 @default.
- W3133145853 hasRelatedWork W3097468641 @default.
- W3133145853 hasRelatedWork W62276109 @default.
- W3133145853 isParatext "false" @default.
- W3133145853 isRetracted "false" @default.
- W3133145853 magId "3133145853" @default.
- W3133145853 workType "article" @default.