Web Server Attack Categorization based on Root Causes and Their Locations

  • Authors:
  • Jeongseok Seo;Han-Sung Kim;Sanghyun Cho;Sungdeok Cha

  • Affiliations:
  • -;-;-;-

  • Venue:
  • ITCC '04 Proceedings of the International Conference on Information Technology: Coding and Computing (ITCC'04) Volume 2 - Volume 2
  • Year:
  • 2004

Quantified Score

Hi-index 0.00

Visualization

Abstract

Frequency of attacks on web services and resulting damagecontinue to grow as web services become popular.Unfortunately, existing signature-based intrusion detectiontechniques are inadequate in providing reasonable degreeof web security. Web attacks are diverse in nature, and typicalweb architecture consists of complex and hierarchicallyorganized components. Because attack strategies oftenvary depending on the web contents, it is impossible to developfixed patterns capturing unknown attacks. Protectionmechanisms such as anomaly-based intrusion detection andapplication-level IDS, tailored to web services, are neededto detect web attacks. The first step in developing web applicationIDS is to analyze and categorize possible web attacksand vulnerabilities. In this paper, we classify web attacks byanalyzing the root causes and the locations where they occur.This research is useful in developing web IDS modules,tracking emerging trends on web attacks, and testing webapplications against potential vulnerabilities.