• DocumentCode
    2625007
  • Title

    An Adaptive Intrusion Detection and Prevention (ID/IP) Framework for Web Services

  • Author

    Yee, Chan Gaik ; Shin, Wong Hui ; Rao, G.S.V.R.K.

  • Author_Institution
    Multimedia Univ., Cyberjaya
  • fYear
    2007
  • fDate
    21-23 Nov. 2007
  • Firstpage
    528
  • Lastpage
    534
  • Abstract
    The advance in Web technology has lead to more and more applications being deployed over the Web service (WS) platform. However, the inherent security weaknesses of the WS platform have lead to these WS-based applications being vulnerable and targets for attacks. This paper identifies and describes the various vulnerabilities and security threats pertaining to WS. After examining the various existing defending mechanisms for WS, it is found that they are not adaptive and adequate in counter-measuring the WS attacks. An adaptive intrusion detection and prevention (ID/IP) framework to protect the WS against attacks related to SOAP/XML/SQL is thus introduced. Through illustration by examples, the framework demonstrated that by making use of agents that act as sensors, data mining techniques such as clustering, association and sequential rule coupled with fuzzy logic to further analyze and identify anomalies, is able to exhibit the adaptive nature of capturing anomalies and avoiding false alarms.
  • Keywords
    Web services; security of data; Web service platform; Web service security; Web technology; adaptive intrusion detection; adaptive intrusion prevention; Computer crime; Electronic mail; Fuzzy logic; Information security; Information technology; Intrusion detection; Protection; Simple object access protocol; Web services; XML;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Convergence Information Technology, 2007. International Conference on
  • Conference_Location
    Gyeongju
  • Print_ISBN
    0-7695-3038-9
  • Type

    conf

  • DOI
    10.1109/ICCIT.2007.422
  • Filename
    4420313