首页> 外文期刊>International journal of digital crime and forensics >Semantic System for Attacks and Intrusions Detection
【24h】

Semantic System for Attacks and Intrusions Detection

机译:攻击和入侵检测的语义系统

获取原文
获取原文并翻译 | 示例
           

摘要

The increasing development of information systems complicate task of protecting against threats. They have become vulnerable to malicious attacks that may affect the essential properties such as confidentiality, integrity and availability. Then the security becomes an overriding concern. Securing a system begins with prevention methods that are insufficient to reduce the danger of attacks, that must be accomplished by intrusion and attack detection systems. In this paper, a method for detecting web application attacks is proposed. Unlike methods based on signatures, the proposed solution is a technique based on ontology. It describes the Web attacks, the HTTP request, and the application using semantic rules. The system is able to detect effectively the sophisticated attacks by analysing user requests. The semantic rules allow inference about the ontologies models to detect complex variations of web attacks. The ontologies models was developed using description logics which was based Web Ontology Language (OWL). The proposed system is able to be installed on an HTTP server.
机译:信息系统的不断发展使防御威胁的任务变得复杂。它们已经变得容易受到恶意攻击,这些恶意攻击可能会影响诸如保密性,完整性和可用性之类的基本属性。然后,安全性成为首要问题。保护系统首先要采取预防措施,这些措施不足以减少攻击的危险,而入侵和攻击检测系统必须做到这一点。本文提出了一种检测Web应用程序攻击的方法。与基于签名的方法不同,提出的解决方案是基于本体的技术。它使用语义规则描述了Web攻击,HTTP请求和应用程序。该系统能够通过分析用户请求来有效检测复杂的攻击。语义规则允许推理有关本体模型以检测Web攻击的复杂变化。本体模型是使用基于Web本体语言(OWL)的描述逻辑开发的。所建议的系统能够安装在HTTP服务器上。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号