DocumentCode
3570932
Title
Sniper: A framework for detecting attack attempts to open source web applications at the run time
Author
Almurayh, Abdullah
Author_Institution
Dept. of Comput. Sci., Univ. of Colorado at Colorado Springs, Colorado Springs, CO, USA
fYear
2014
Firstpage
633
Lastpage
638
Abstract
Open source web applications offer webmasters and owners like you free solutions for building personal, business, official and social network websites. On the other hand, open source web applications allow attackers a complete map of its structure, design and functionality. In fact, using open source web applications is a double-edged sword in that it supplies both attackers and defenders more control over their security aspect. Well-known attacks are aimed access resources that are not referenced by the web application and lead to information discloser. Inspired by the idea of a sniper lurking in the shadows of civilization as a secret guard, this paper proposes a framework-named Sniper-to improve the security of open source web applications. Mimicking a real sniper who hides in the bushes to watch and eliminate dangerous enemies, the proposed Sniper framework is hidden within the web application to capture potential attackers. To illustrate further, if an attacker approaches your website seeking sensitive data, Sniper will be there watching to detect the intrusion, notify the webmaster anonymously, and block the attacker based on predefined thresholds. Therefore, Sniper identifies and mitigates attack attempts ahead of time by monitoring suspicious traffic intended to reach forbidden or sensitive areas. Sniper was implemented and tested using three different open source web applications. As a webmaster, I cannot imagine a better lights-out monitoring solution that not only notifies me, but also blocks potentially malicious access.
Keywords
Web sites; computer crime; public domain software; Sniper framework; Webmasters; attack attempts detection; attackers; business Websites; intrusion detection; malicious access; official Websites; open source Web applications; personal Websites; security aspect; sensitive data; social network Websites; suspicious traffic monitoring; Electronic mail; Monitoring; Security; Testing; Web servers; Web sites;
fLanguage
English
Publisher
ieee
Conference_Titel
Information Reuse and Integration (IRI), 2014 IEEE 15th International Conference on
Type
conf
DOI
10.1109/IRI.2014.7051949
Filename
7051949
Link To Document