A distributed multi-approach intrusion detection system for web services

  • Authors:
  • Meisam S.A. Najjar;Mohammad Abdollahi Azgomi

  • Affiliations:
  • Iran University of Science and Technology and Research Centre of Intelligence Signal Processing, Tehran, Iran;Iran University of Science and Technology, Tehran, Iran

  • Venue:
  • Proceedings of the 3rd international conference on Security of information and networks
  • Year:
  • 2010

Quantified Score

Hi-index 0.00

Visualization

Abstract

Security is the main concern and a challenging problem of Web services. In the recent years, XML-sensitive security appliances, such as XML firewalls or Web service firewalls, have been introduced to protect services. However, attackers can still compromise web services and do their malicious actions. Intrusion detection systems (IDS) are appropriate for defence in depth; and sit behind of firewalls in the security structure of an enterprise. However, network IDSs fail to detect attacks in Web service layer. In this paper, we propose an intrusion detection system for web services (WS-IDS), to detect malicious behaviors of the requesters of a typical web service. This idea is motivated by considering the inability of the existing IDSs to detect the attacks in web service layer. WS-IDS can be used in addition to other security appliances for web services, such as web service/XML firewalls.