首页> 外文期刊>International Journal of Information Security >A method for identifying Web applications

A method for identifying Web applications


获取原文并翻译 | 示例


Web applications are ubiquitous in today's busi-nesses. The security of these applications is of utmost impor-tance since security breaches might negatively impact goodreputation, and even result in bankruptcy. There are differentmethods of assessing security of Web applications, mainlybased on some automated method of scanning. One type ofscan method feeds random data to the application and moni-tors its behavior. The other type uses a database with prede-fined vulnerabilities that are checked one by one until eithera vulnerability is found, or it can be claimed that the applica-tion does not have any known vulnerabilities. The importantstep in latter type of scan process is the identification of theapplication since in this case we are narrowing number ofchecks and, as a consequence, the scan process is faster. Thispaper describes a method for Web application identificationbased on a black box principle. Our method is based on theinvariance of certain characteristics of Web applications. Weexperimentally tested and confirmed the usefulness of thisapproach.



  • 外文文献
  • 中文文献
  • 专利


京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号