Web Threats Detection and Prevention Framework
- 1 Department of Business Information Technology, The University of Jordan, Amman, Jordan
- 2 Department of Computer Science, The University of Jordan, Amman, Jordan
- 3 Department of Computer Science, The University of Jordan, Amman, Jordan
- 4 Department of Computer Science, The University of Jordan, Amman, Jordan
- 5 Department of Business Information Technology, The University of Jordan, Amman, Jordan
Abstract
The rapid advancement in technology and the increased number of web applications with very short turnaround time caused an increased need for protection from vulnerabilities that grew due to decision makers overlooking the need to be protected from attackers or software developers lacking the skills and experience in writing secure code. Structured Query Language (SQL) Injection, cross-site scripting (XSS), Distributed Denial of service (DDos) and suspicious user behaviour are some of the common types of vulnerabilities in web applications by which the attacker can disclose the web application sensitive information such as credit card numbers and other confidential information. This paper proposes a framework for the detection and prevention of web threats (WTDPF) which is based on preventing the attacker from gaining access to confidential data by studying his behavior during the action of attack and taking preventive measures to reduce the risks of the attack and as well reduce the consequences of such malicious action. The framework consists of phases which begin with the input checking phase, signature based action component phase, alert and response phases. Additionally, the framework has a logging functionality to store and keep track of any action taking place and as well preserving information about the attacker IP address, date and time of the attack, type of the attack, and the mechanism the attacker used. Moreover, we provide experimental results for different kinds of attacks, and we illustrate the success of the proposed framework for dealing with and preventing malicious actions.
- Balasundaram, I. and Ramaraj, E. (2011) An Approach to Detect and Prevent SQL Injection Attacks in Database Using Web Service. International Journal of Computer Science and Network Security, 11, 197-205.
- Kumar, P. (2013) The Multi-Tier Architecture for Developing Secure Website with Detection and Prevention of SQL- Injection Attacks. International Journal of Computer Applications, 62, 30-36.
- Uddin, M., Rehman, A., Uddin, N., Memon, J., Alsaqour, R. and Kazi, S. (2013) Signature-Based Multi-Layer Distributed Intrusion Detection System Using Mobile Agents. International Journal of Network Security, 15, 79-87.
- Darwish, F., et al. (2011) The Impact of the New Web 2.0 Technologies in Communication, Development, and Revolutions of Societies. Journal of Advances in Information Technology, 2, No. 4.
- Duraisamy, A., et al. (2013) A Server Side Solution for Protection of Web Applications from Cross-Site Scripting Attacks. International Journal of Innovative Technology and Exploring Engineering (IJITEE), 2, 130-137.
- Thopate, P., et al. (2014) Cross Site Scripting Attack Detection & Prevention System. International Journal of Advanced Research in Computer Engineering & Technology (IJARCET), 3, 4035-4039.
- Mahapatra, R., et al. (2012) A Pattern Based Approach to Secure Web Applications from XSS Attacks. International Journal of Computer Technology and Electronics Engineering (IJCTEE), 2, 196-203.
- Pratik, S. and Gheewala, J. (2014) Detection and Prevention of SQL Injection Attacks. International Journal of Engineering Development and Research, 2, 2660-2666.
- Tang, Z., et al. (2012) Identifying Cross-Site Scripting Attacks Based on URL Analysis. International Journal of Engineering and Manufacturing (IJEM), 2, 52-61.
- Balasundram, I. and Ramaraj, E. (2013) Prevention of SQL Injection Attacks by Using Service Oriented Authentication Technique. International Journal of Modeling and Optimization, 3, 302-306.
- Balasundaram, I. and Ramaraj, E. (2011) An Efficient Technique for Detection and Prevention of SQL Injection Attack Using ASCII Based String Matching. International Journal of Engineering Development and Research, 2, 2660-2666.
- .Roy, S., et al. (2012) A Novel Approach to Prevent SQL Injection Attack Using URL Filter. International Journal of Innovation, Management and Technology, 3, 499-502.
- Ramesh, D. and Kumar, R. (2012) Double Guard Approach for Detecting Intrusions in Multitier Web Applications. International Journal of Communication Network and Security, 2, 203-213.