See this document in CiteSeerX!

Anomaly Detection of Web-based Attacks (2003)  (Make Corrections)  (4 citations)
Christopher Kruegel Giovanni Vigna



  Home/Search   Context   Related

 
View or download:
auto.tuwien.ac.at/~chris/r...2003_06.ps
Cached:  PS.gz  PS  PDF   Image  Update  Help

From:  auto.tuwien.ac.at/...publications (more)
(Enter author homepages)

Rate this article: (best)
  Comment on this article  
(Enter summary)

Abstract: Web-based vulnerabilities represent a substantial portion of the security exposures of computer networks. In order to detect known web-based attacks, misuse detection systems are equipped with a large number of signatures. Unfortunately, it is di#cult to keep up with the daily disclosure of web-related vulnerabilities, and, in addition, vulnerabilities may be introduced by installation-specific web-based applications. Therefore, misuse detection systems should be complemented with anomaly... (Update)

Cited by:   More
A Comprehensive Approach to Intrusion Detection Alert.. - Valeur, Vigna.. (2004)   (Correct)
Using Generalization and Characterization Techniques in the - Anomaly-Based Detection Of   (Correct)
Visualising Intrusions: Watching the Webserver - Axelsson (2005)   (Correct)

Active bibliography (related documents):   More   All
1.1:   Anomaly Detection of Web-based Attacks - Kruegel, Vigna (2003)   (Correct)
0.3:   A Stateful Intrusion Detection System for World-Wide.. - Vigna, Robertson.. (2003)   (Correct)
0.1:   Intrusion Detection: A Bibliography - Mé, Michel (2001)   (Correct)

Similar documents based on text:
0.0:   Unknown -   (Correct)

Related documents from co-citation:   More   All
2:   Detecting anomalous and unknown intrusions against programs - Ghosh, Wanken et al. - 1998
2:   Detecting Intrusions Using System Calls: Alternative Data Models - Christina, Forrest et al. - 1999
2:   Execution Monitoring of Security-Critical Programs in Distributed Systems: A Spe.. (context) - Ko, Ruschitzka et al. - 1997

BibTeX entry:   (Update)

C. Kruegel and G. Vigna. Anomaly detection of web-based attacks. In Proceedings of 10th ACM Conference on Computer and Communications Security (CCS'03), October 2003. http://citeseer.ist.psu.edu/article/kruegel03anomaly.html   More

@misc{ kruegel03anomaly,
  author = "C. Kruegel and G. Vigna",
  title = "Anomaly detection of web-based attacks",
  text = "C. Kruegel and G. Vigna. Anomaly detection of web-based attacks. In Proceedings
    of 10th ACM Conference on Computer and Communications Security (CCS'03),
    October 2003.",
  year = "2003",
  url = "citeseer.ist.psu.edu/article/kruegel03anomaly.html" }
Citations (may not include all citations):
466   Probability and Measure (context) - Billingsley - 1995
236   Hypertext Transfer Protocol -- HTTP - Fielding - 1999
142   A Sense of Self for UNIX Processes - Forrest - 1996
133   IEEE Transactions on Software Engineering (context) - Denning, Detection - 1987
105   State Transition Analysis: A Rule-Based Intrusion Detection .. - Ilgun, Kemmerer et al. - 1995
59   Execution Monitoring of Security-Critical Programs in Distri.. (context) - Ko, Ruschitzka et al. - 1997
41   The SRI IDES Statistical Anomaly Detector (context) - Javitz, Valdes - 1991
40   Temporal sequence learning and data reduction for anomaly de.. - Lane, Brodley - 1998
21   Detecting Anomalous and Unknown Intrusions Against Programs - Ghosh, Wanken et al. - 1998
19   Mining in a Data-flow Environment: Experience in Network Int.. - Lee, Stolfo et al.
18   A Framework for Constructing Features and Models for Intrusi.. - Lee, Stolfo - 2000
9   Application-Integrated Data Collection for Security Monitori.. - Almgren, Lindqvist - 2001
9   Service Specific Anomaly Detection for Network Intrusion Det.. (context) - Kruegel, Toth et al. - 2002
8   The WWW Common Gateway Interface (context) - Coar, Robinson - 1999
4   Code Red Worm (context) - CC - 2001
3   Mining Malicious Data Corruption with Hidden Markov Models (context) - Barbara, Goel et al. - 2002
http://www.horde.org/imp/
http://www.webwho.co.uk/
http://www.cgiscript.net/

Documents on the same site (http://www.auto.tuwien.ac.at/~chris/research/publications.html):   More
Protecting Users against Phishing Attacks - Kirda, Kruegel (2005)   (Correct)
Connection-History Based Anomaly Detection - Toth, Krügel (2002)   (Correct)
Noxes: A Client-Side Solution for Mitigating.. - Kirda, Kruegel.. (2006)   (Correct)

Online articles have much greater impact   More about CiteSeer.IST   Add search form to your site   Submit documents   Feedback  

CiteSeer.IST - Copyright Penn State and NEC