Study of Intrusion Detecton Mondels for Web Applications

ZHOU Yong-lu,WU Hai-yan,JIANG Dong-xing
DOI: https://doi.org/10.3969/j.issn.1671-0428.2012.05.004
2012-01-01
Abstract:As traditional security techniques fail to protect web applications from attacks,more research has focus on intrusion detection for web applications.Access logs are the most important data source for intrusion detection.However,log files usually contain a huge quantity of records.Without effective methods,it is not feasible for administrator to inspect and locate intrusions.Misuse detection and anomaly detection models have been proposed to solve this problem.This paper conducts intrusion detection over a real web application based on statistical anomaly-based models.The result shows these models can effectively detect attacks like SQL injection.
What problem does this paper attempt to address?