Inicio  /  Future Internet  /  Vol: 11 Par: 2 (2019)  /  Artículo
ARTÍCULO
TITULO

BlackWatch: Increasing Attack Awareness within Web Applications

Calum C. Hall    
Lynsay A. Shepherd and Natalie Coull    

Resumen

Web applications are relied upon by many for the services they provide. It is essential that applications implement appropriate security measures to prevent security incidents. Currently, web applications focus resources towards the preventative side of security. While prevention is an essential part of the security process, developers must also implement a level of attack awareness into their web applications. Being able to detect when an attack is occurring provides applications with the ability to execute responses against malicious users in an attempt to slow down or deter their attacks. This research seeks to improve web application security by identifying malicious behavior from within the context of web applications using our tool BlackWatch. The tool is a Python-based application which analyzes suspicious events occurring within client web applications, with the objective of identifying malicious patterns of behavior. This approach avoids issues typically encountered with traditional web application firewalls. Based on the results from a preliminary study, BlackWatch was effective at detecting attacks from both authenticated and unauthenticated users. Furthermore, user tests with developers indicated BlackWatch was user-friendly, and was easy to integrate into existing applications. Future work seeks to develop the BlackWatch solution further for public release.

 Artículos similares

       
 
Alberto Sigala and Brent Langhals    
Over recent decades, the world has experienced a growing demand for and reliance upon unmanned aerial systems (UAS) to perform a broad spectrum of applications to include military operations such as surveillance/reconnaissance and strike/attack. As UAS t... ver más
Revista: Drones

 
Vita Santa Barletta, Danilo Caivano, Antonella Nannavecchia and Michele Scalera    
The diffusion of embedded and portable communication devices on modern vehicles entails new security risks since in-vehicle communication protocols are still insecure and vulnerable to attacks. Increasing interest is being given to the implementation of ... ver más
Revista: Future Internet

 
A. López,V.E. Parnás,J. Cataldo     Pág. Page 15 - 24
Over the last decades, renewable energy resources have gained an increasing interest for human development and, specifically, photovoltaic solar energy has shown a speedy and rising expansion. Several photovoltaic solar panel farms have been built in man... ver más

 
Georgios Kavallieratos, Nabin Chowdhury, Sokratis Katsikas, Vasileios Gkioulos and Stephen Wolthusen    
The development and deployment of highly dynamic, cyber+connected operational environments, such as smart homes, smart cities, and smart transportation systems, is increasing. The security analysis of such dynamic environments necessitates the use of dyn... ver más
Revista: Future Internet

 
Wenxian Yang, Theodoros Alexandridis and Wenye Tian    
Horizontal-axis axial flow tidal current turbine is regularly used to exploit the kinematic energy in tidal currents. However, the scaling up of tidal current turbine is very difficult. This is because strong tidal current only exists in the underwater r... ver más
Revista: Energies