Title :
Grammar-Based Anomaly Methods for HTTP Attacks
Author :
Yang, Xiaofeng ; Sun, Mingming ; Hu, Xuelei ; Yang, Jingyu
Author_Institution :
Sch. of Comput. Sci. & Technol., Nanjing Univ. of Sci. & Technol., Nanjing, China
Abstract :
HTTP-related vulnerabilities are being more commonly exploited as HTTP applications becoming the number one application across the Internet. Several HTTP specific anomaly methods have been proposed, among which grammar-based methods tend more likely to reflect the underlying structure of HTTP communications, therefore showed a promising classifying capability between benign and malicious accesses. Because of being separately proposed among other methods, grammar-based methods have not been summarized and compared directly on the same dataset. This paper presents several grammar-based anomaly methods for HTTP attacks, reveals their detecting capabilities, common features, strengths and drawbacks in comparison with each other.
Keywords :
Internet; grammars; security of data; transport protocols; HTTP attack; HTTP communication structure; Hypertext Transfer Protocol; Internet; benign access; grammar-based anomaly method; malicious access; Application software; Computer science; Computer vision; Electronic mail; Internet; Intrusion detection; Protocols; Sun; Testing; Web services;
Conference_Titel :
Pattern Recognition, 2009. CCPR 2009. Chinese Conference on
Conference_Location :
Nanjing
Print_ISBN :
978-1-4244-4199-0
DOI :
10.1109/CCPR.2009.5344007