首页> 外文期刊>International Journal of Artificial Intelligence Tools: Architectures, Languages, Algorithms >WEB MISUSE DETECTION THROUGH TEXT CATEGORISATION OF APPLICATION SERVER LOGS
【24h】

WEB MISUSE DETECTION THROUGH TEXT CATEGORISATION OF APPLICATION SERVER LOGS

机译:通过应用服务器日志的文本分类来进行Web滥用检测

获取原文
获取原文并翻译 | 示例
       

摘要

Security in web-based systems that handle confidential information can be considered a particularly sensitive subject that requires assuming some responsibilities about security. Achieving a secure web application involves tackling several issues such encryption of traffic and certain database information, strictly restricted access control, etc. In this work we focus on detecting misuse of the web application in order to gain unauthorised access. We introduce an Intrusion Detection component that by applying Text Categorisation is capable of learning the characteristics of both normal and malicious user behaviour from the regular, high-level log entries generated by web application through its application server. Therefore, the detection of misuse in the web application is achieved without the need of explicit programming or modification of the existing web application. We applied our Intrusion Detection component to a real web-based telemedicine system in order to offer some evaluation measurements. This articles offers an overview of the model, our experiences, and observations.
机译:可以将处理机密信息的基于Web的系统中的安全性视为特别敏感的主题,需要承担一些有关安全性的责任。实现安全的Web应用程序涉及解决一些问题,例如流量加密和某些数据库信息,严格限制的访问控制等。在这项工作中,我们着重于检测Web应用程序的滥用以获取未经授权的访问。我们引入了一个入侵检测组件,该组件通过应用文本分类能够从Web应用程序通过其应用程序服务器生成的常规高级日志条目中了解正常用户和恶意用户行为的特征。因此,无需显式编程或修改现有Web应用程序即可实现Web应用程序中滥用的检测。我们将入侵检测组件应用于基于Web的真实远程医疗系统,以便提供一些评估指标。本文概述了该模型,我们的经验和观察结果。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号