Recent Attack Prevention Techniques in Web Service Applications

被引:0
|
作者
Bherde, Gajanan P. [1 ]
Pund, M. A. [2 ]
机构
[1] KJ Somaiya Coll Engn, Dept Comp Engn, Bombay, Maharashtra, India
[2] PRMIT&R, Dept Comp Sci & Engn, Badnera, Amravati, India
关键词
web applications; attack detection; attack prevention; web security; XML attack;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Internet security is very challenging task because internet is become very much essential part of human life. Most of the attacks are happen at application layer which causes the security of applications. Such internet based applications includes banking, defense, education, medicine etc, which require high level security. This paper explains basic types of attacks which harmful for web applications like, cross Site Scripting attack, cross site request forgery, SQL Injection Attack, Server Misconfiguration and Predictable Page, Breaking Authentication Schemes, Logic Attacks, Web of Distrust. Now a day, most of the application development is based on XML. This paper described XML based application attack including Xpatth injection, Xquery injection and XSS injection in details. We also make survey of various traditional and recent approaches to detect, prevent and remove the web application attacks. We compare these applications based on technique used to detect attack, which type of attack they resolve, to check the approach which dataset they used and finally provide the limitation of that system and respective future directions. This will helpful for researchers for further research in respective field.
引用
收藏
页码:1174 / 1180
页数:7
相关论文
共 50 条
  • [1] A Survey on XSS Attack Detection and Prevention in Web Applications
    Cui, Yanpeng
    Cui, Junjie
    Hu, Jianwei
    ICMLC 2020: 2020 12TH INTERNATIONAL CONFERENCE ON MACHINE LEARNING AND COMPUTING, 2018, : 443 - 449
  • [2] A survey of distributed denial-of-service attack, prevention, and mitigation techniques
    Mahjabin, Tasnuva
    Xiao, Yang
    Sun, Guang
    Jiang, Wangdong
    INTERNATIONAL JOURNAL OF DISTRIBUTED SENSOR NETWORKS, 2017, 13 (12):
  • [3] NoSQL Injection Attack Detection in Web Applications Using RESTful Service
    Eassa, Ahmed M.
    Elhoseny, Mohamed
    El-Bakry, Hazem M.
    Salama, Ahmed S.
    PROGRAMMING AND COMPUTER SOFTWARE, 2018, 44 (06) : 435 - 444
  • [4] NoSQL Injection Attack Detection in Web Applications Using RESTful Service
    Ahmed M. Eassa
    Mohamed Elhoseny
    Hazem M. El-Bakry
    Ahmed S. Salama
    Programming and Computer Software, 2018, 44 : 435 - 444
  • [5] Attack Technology Research for Web Service
    SU Guangnan
    FENG Yongxin
    沈阳理工大学学报, 2014, 33 (02) : 88 - 94
  • [6] Web Service Injection Attack Detection
    Clincy, Victor
    Shahriar, Hossain
    2017 12TH INTERNATIONAL CONFERENCE FOR INTERNET TECHNOLOGY AND SECURED TRANSACTIONS (ICITST), 2017, : 173 - 178
  • [7] Android Smudge Attack Prevention Techniques
    Amruth, M. D.
    Praveen, K.
    INTELLIGENT SYSTEMS TECHNOLOGIES AND APPLICATIONS, VOL 2, 2016, 385 : 23 - 31
  • [8] Vulnerability & Attack Injection for Web Applications
    Fonseca, Jose
    Vieiraz, Marco
    Madeira, Henrique
    2009 IEEE/IFIP INTERNATIONAL CONFERENCE ON DEPENDABLE SYSTEMS & NETWORKS (DSN 2009), 2009, : 93 - +
  • [9] Implementation and comparison of denial of service attack techniques
    Elleithy, KM
    Blagovic, D
    Cheng, W
    Sideleau, P
    8TH WORLD MULTI-CONFERENCE ON SYSTEMICS, CYBERNETICS AND INFORMATICS, VOL III, PROCEEDINGS: COMMUNICATION AND NETWORK SYSTEMS, TECHNOLOGIES AND APPLICATIONS, 2004, : 336 - 341
  • [10] Distributed Denial of Service: Attack techniques and mitigation
    Vanitha, K. S.
    Uma, S. V.
    Mahidhar, S. K.
    2017 2ND INTERNATIONAL CONFERENCE ON CIRCUITS, CONTROLS, AND COMMUNICATIONS (CCUBE), 2017, : 226 - 231