首页|Web应用攻击检测方法综述

Web应用攻击检测方法综述

Review of detection methods for Web application attack

扫码查看
Web应用程序是众多组织进行业务运营和用户服务的重要方式.数据的交互和共享通过Web浏览器实现,由于涉及用户的敏感信息和业务数据,网站和数据库经常成为各种高频Web攻击的目标.随着新型Web攻击不断涌现,传统的Web攻击检测技术不再适用,国内外学者开始采用新兴技术进行攻击检测的研究.通过对近 3 年国内外文献调研,本文首先从Web攻击过程和相关概念展开叙述,全面分析了目前Web应用程序的攻击现状;其次,从机器学习和深度学习、Web应用防火墙(WAF,Web application firewall)优化和Web蜜罐欺骗技术 3个方面总结目前最新的检测方法,并对比分析了不同模型的性能和优势;最后,总结Web攻击检测面临的挑战,并对未来研究进行了展望.
Web application plays a crucial role in facilitating business operation and user service for numerous organizations.Data interaction and sharing are achieved through web browsers,while due to the involvement of sensitive infor-mation and business data,websites and databases often become targets of various high-frequency Web attack.With the continuous emergence of new types of Web attack,traditional Web attack detection technologies have be-come inadequate,and domestic and foreign scholars have started to adopt novel approaches for attack detection re-search.Based on an extensive review of domestic and foreign literature from the past three years,this paper firstly describes the process of Web attack and related concept,as well as comprehensively analyzes the current state of Web application attack.Subsequently,the latest detection methods are summarized from three perspectives of ma-chine learning and deep learning,optimization of Web application firewall(WAF),as well as Web honeypot de-ception technology,and the performance and advantages of different models are compared and analyzed.Finally,the challenges associated with detecting Web attack are summarized,and prospects for future research are provided.

Web attack detectionmachine learningdeep learningfirewallhoneypot

杨宏宇、张建伟、胡泽、成翔、张良

展开 >

中国民航大学 安全科学与工程学院,天津 300300

中国民航大学 计算机科学与技术学院,天津 300300

中国民航大学 信息安全测评中心,天津 300300

扬州大学信息工程学院,江苏 扬州 225127

亚利桑那大学信息学院,美国 亚利桑那图森 AZ85721

展开 >

Web攻击检测 机器学习 深度学习 防火墙 蜜罐

国家自然科学基金国家自然科学基金中央高校基本科研业务费专项中国民航大学信息安全测评中心开放基金

62201576U18331073122022050ISECCA-202202

2024

中国民航大学学报
中国民航大学

中国民航大学学报

影响因子:0.363
ISSN:1674-5590
年,卷(期):2024.42(2)
  • 49