Design and Implementation of a New Web Anti-Attack Method Based on URL Randomization

Wei Liu,Chengrong Wu,Haolin Jin,Shiyong Zhang
DOI: https://doi.org/10.1109/cits.2016.7546416
2016-01-01
Abstract:Web security is an important part of information security. This paper proposes a new web anti-attack method based on URL randomization. Adding a random field in the URL leads that the attackers cannot get desired URLs through sniffing and scanning the static URLs. In the section of theoretical analysis, we analyze the probability that the attackers construct the correct URLs. Finally, we implement a prototype of the method we come up with and use it to measure the overhead the method will bring. Experiment results shows that the overhead the method brings is very little and this method has the significance of practical application.
What problem does this paper attempt to address?