Design of Provider-Provisioned Website Protection Scheme against Malware Distribution
スポンサーリンク
概要
- 論文の詳細を見る
Vulnerabilities in web applications expose computer networks to security threats, and many websites are used by attackers as hopping sites to attack other websites and user terminals. These incidents prevent service providers from constructing secure networking environments. To protect websites from attacks exploiting vulnerabilities in web applications, service providers use web application firewalls (WAFs). WAFs filter accesses from attackers by using signatures, which are generated based on the exploit codes of previous attacks. However, WAFs cannot filter unknown attacks because the signatures cannot reflect new types of attacks. In service provider environments, the number of exploit codes has recently increased rapidly because of the spread of vulnerable web applications that have been developed through cloud computing. Thus, generating signatures for all exploit codes is difficult. To solve these problems, our proposed scheme detects and filters malware downloads that are sent from websites which have already received exploit codes. In addition, to collect information for detecting malware downloads, web honeypots, which automatically extract the communication records of exploit codes, are used. According to the results of experiments using a prototype, our scheme can filter attacks automatically so that service providers can provide secure and cost-effective network environments.
論文 | ランダム
- 電顕的にoncocyteの特徴を有した肺原発粘液結節性腺癌の1切除例
- 31.当院に於ける肺野小結節性病変に対するCTガイド下生検についての検討(第35回日本肺癌学会九州支部会)
- 40512 都区部における熱供給ネットワークの有効性に関する研究 : その2 累積負荷曲線による有効性の検討
- 40511 都区部における熱供給ネットワークの有効性に関する研究 : その1 既存DHCの面的拡大と熱供給量に関する考察
- 4694 横浜市・川崎市における高温排熱による熱供給ネットワークの可能性に関する研究 : 神奈川県における未利用熱エネルギー利用可能性に関する研究・その7