A Survey on Deception Techniques for Securing Web Application

Many web applications are developed to handle important and critical tasks, which may attract a large number of attackers. With various types of attacks, there is no finite solution to mitigate it's all. Deception technique is one of the area that can be explore to defend against web attack. De...

Full description

Saved in:
Bibliographic Details
Main Authors: Mohd Efendi, M.A.E., Ibrahim, Z.-A., Ahmad Zawawi, M.N., Abdul Rahim, F., Muhamad Pahri, N., Ismail, A.
Format: Conference Paper
Language:English
Published: 2020
Tags: Add Tag
No Tags, Be the first to tag this record!
id my.uniten.dspace-13032
record_format dspace
spelling my.uniten.dspace-130322020-07-06T07:00:42Z A Survey on Deception Techniques for Securing Web Application Mohd Efendi, M.A.E. Ibrahim, Z.-A. Ahmad Zawawi, M.N. Abdul Rahim, F. Muhamad Pahri, N. Ismail, A. Many web applications are developed to handle important and critical tasks, which may attract a large number of attackers. With various types of attacks, there is no finite solution to mitigate it's all. Deception technique is one of the area that can be explore to defend against web attack. Deception can detect, analyzed and defend against advanced web attack that cannot be done using existing anomaly-based detection and prevention techniques. Current deceptive solutions tend to be doubtful to application-layer protocols and lack of study on how deception can be applied at this level. Thus, those solutions can't properly be used to protect against application-layer attacks that are integrally based on elements from the application-layer itself. This research aims to study possible usages of deception techniques that could be incorporated in the context of application-layer traffic of web applications with the purpose of detecting web application attacks. The comparative results from this study will be used to identify which deception techniques are suitable to provide a useful layer of protection for a web application. © 2019 IEEE. 2020-02-03T03:29:55Z 2020-02-03T03:29:55Z 2019 Conference Paper 10.1109/BigDataSecurity-HPSC-IDS.2019.00066 en
institution Universiti Tenaga Nasional
building UNITEN Library
collection Institutional Repository
continent Asia
country Malaysia
content_provider Universiti Tenaga Nasional
content_source UNITEN Institutional Repository
url_provider http://dspace.uniten.edu.my/
language English
description Many web applications are developed to handle important and critical tasks, which may attract a large number of attackers. With various types of attacks, there is no finite solution to mitigate it's all. Deception technique is one of the area that can be explore to defend against web attack. Deception can detect, analyzed and defend against advanced web attack that cannot be done using existing anomaly-based detection and prevention techniques. Current deceptive solutions tend to be doubtful to application-layer protocols and lack of study on how deception can be applied at this level. Thus, those solutions can't properly be used to protect against application-layer attacks that are integrally based on elements from the application-layer itself. This research aims to study possible usages of deception techniques that could be incorporated in the context of application-layer traffic of web applications with the purpose of detecting web application attacks. The comparative results from this study will be used to identify which deception techniques are suitable to provide a useful layer of protection for a web application. © 2019 IEEE.
format Conference Paper
author Mohd Efendi, M.A.E.
Ibrahim, Z.-A.
Ahmad Zawawi, M.N.
Abdul Rahim, F.
Muhamad Pahri, N.
Ismail, A.
spellingShingle Mohd Efendi, M.A.E.
Ibrahim, Z.-A.
Ahmad Zawawi, M.N.
Abdul Rahim, F.
Muhamad Pahri, N.
Ismail, A.
A Survey on Deception Techniques for Securing Web Application
author_facet Mohd Efendi, M.A.E.
Ibrahim, Z.-A.
Ahmad Zawawi, M.N.
Abdul Rahim, F.
Muhamad Pahri, N.
Ismail, A.
author_sort Mohd Efendi, M.A.E.
title A Survey on Deception Techniques for Securing Web Application
title_short A Survey on Deception Techniques for Securing Web Application
title_full A Survey on Deception Techniques for Securing Web Application
title_fullStr A Survey on Deception Techniques for Securing Web Application
title_full_unstemmed A Survey on Deception Techniques for Securing Web Application
title_sort survey on deception techniques for securing web application
publishDate 2020
_version_ 1672614200450482176
score 13.214268