Preventive method based on ranking and voting scheme for intrusion detection in webservice

Detalhes bibliográficos
Autor(a) principal: Danta, Ligia Maria da Silva
Data de Publicação: 2021
Outros Autores: Guelfi, Adilson Eduardo, da Silva, Anderson Aparecido Alves, de Azevedo, Marcelo Teixeira, Kofuji, Sergio Takeo
Tipo de documento: Artigo
Idioma: por
Título da fonte: Repositório Científico de Acesso Aberto de Portugal (Repositórios Cientìficos)
Texto Completo: https://doi.org/10.34627/rcc.v16i0.263
Resumo: The Price and Deadline Calculator (CPP) is a gratuitous webservice available on the Internet for freight consultations that receive between 8 and 28 thousand of daily queries. CPP constantly receives attacks in the form of queries that cause unavailability and slowness in the system. The current criteria used to solve this problem are not based on traffic volume, because it is costly and may eventually block valid customers. This work aims to propose a method of preventive detection of attacks against availability, based on a rankings/weights scheme that improves the accuracy and response time of detecting suspicious connections in a webservice. In the experiment, a voting scheme is created, generated from network traffic, where standard-based statistics and predefined rules are used to compose a ranking of suspicion for each query.
id RCAP_825af9f3206c5152d9e1033b04ae69ed
oai_identifier_str oai:ojs2.journals.uab.pt:article/263
network_acronym_str RCAP
network_name_str Repositório Científico de Acesso Aberto de Portugal (Repositórios Cientìficos)
repository_id_str 7160
spelling Preventive method based on ranking and voting scheme for intrusion detection in webserviceMétodo preventivo baseado em esquema de ranking para detecção de ataques contra a disponibilidade em webserviceThe Price and Deadline Calculator (CPP) is a gratuitous webservice available on the Internet for freight consultations that receive between 8 and 28 thousand of daily queries. CPP constantly receives attacks in the form of queries that cause unavailability and slowness in the system. The current criteria used to solve this problem are not based on traffic volume, because it is costly and may eventually block valid customers. This work aims to propose a method of preventive detection of attacks against availability, based on a rankings/weights scheme that improves the accuracy and response time of detecting suspicious connections in a webservice. In the experiment, a voting scheme is created, generated from network traffic, where standard-based statistics and predefined rules are used to compose a ranking of suspicion for each query.O Calculador de Preços e Prazos (CPP) é um webservice disponível gratuitamente na Internet para consulta de fretes que recebe entre 8 e 28 mil consultas diárias. Constantemente, o CPP sofre ataques na forma de consultas que causam indisponibilidade e lentidão no sistema. O atual critério usado para a resolução desse problema não tem por base o volume de tráfego, por ser oneroso e bloquear, eventualmente, clientes válidos. O objetivo deste trabalho é propor um método de detecção preventivo de ataques contra a disponibilidade, baseado em um esquema de rankings/pesos que melhore a precisão e o tempo de resposta da detecção de conexões suspeitas em um webservice. No experimento é criado um esquema de votação, gerado a partir do tráfego de rede, onde padrões baseados em estatística e regras pré-definidas são usados para compor um ranking de suspeição para cada consultaUniversidade Aberta2021-12-07info:eu-repo/semantics/publishedVersioninfo:eu-repo/semantics/articleapplication/pdfhttps://doi.org/10.34627/rcc.v16i0.263https://doi.org/10.34627/rcc.v16i0.263Revista de Ciências da Computação; v. 16 (2021); 1-222182-18011646-633010.34627/rcc.v16i0reponame:Repositório Científico de Acesso Aberto de Portugal (Repositórios Cientìficos)instname:Agência para a Sociedade do Conhecimento (UMIC) - FCT - Sociedade da Informaçãoinstacron:RCAAPporhttps://journals.uab.pt/index.php/rcc/article/view/263https://journals.uab.pt/index.php/rcc/article/view/263/218Direitos de Autor (c) 2021 Universidade Abertahttp://creativecommons.org/licenses/by/4.0info:eu-repo/semantics/openAccessDanta, Ligia Maria da SilvaGuelfi, Adilson Eduardoda Silva, Anderson Aparecido Alvesde Azevedo, Marcelo TeixeiraKofuji, Sergio Takeo2022-12-23T06:30:14Zoai:ojs2.journals.uab.pt:article/263Portal AgregadorONGhttps://www.rcaap.pt/oai/openaireopendoar:71602024-03-19T16:14:02.335670Repositório Científico de Acesso Aberto de Portugal (Repositórios Cientìficos) - Agência para a Sociedade do Conhecimento (UMIC) - FCT - Sociedade da Informaçãofalse
dc.title.none.fl_str_mv Preventive method based on ranking and voting scheme for intrusion detection in webservice
Método preventivo baseado em esquema de ranking para detecção de ataques contra a disponibilidade em webservice
title Preventive method based on ranking and voting scheme for intrusion detection in webservice
spellingShingle Preventive method based on ranking and voting scheme for intrusion detection in webservice
Danta, Ligia Maria da Silva
title_short Preventive method based on ranking and voting scheme for intrusion detection in webservice
title_full Preventive method based on ranking and voting scheme for intrusion detection in webservice
title_fullStr Preventive method based on ranking and voting scheme for intrusion detection in webservice
title_full_unstemmed Preventive method based on ranking and voting scheme for intrusion detection in webservice
title_sort Preventive method based on ranking and voting scheme for intrusion detection in webservice
author Danta, Ligia Maria da Silva
author_facet Danta, Ligia Maria da Silva
Guelfi, Adilson Eduardo
da Silva, Anderson Aparecido Alves
de Azevedo, Marcelo Teixeira
Kofuji, Sergio Takeo
author_role author
author2 Guelfi, Adilson Eduardo
da Silva, Anderson Aparecido Alves
de Azevedo, Marcelo Teixeira
Kofuji, Sergio Takeo
author2_role author
author
author
author
dc.contributor.author.fl_str_mv Danta, Ligia Maria da Silva
Guelfi, Adilson Eduardo
da Silva, Anderson Aparecido Alves
de Azevedo, Marcelo Teixeira
Kofuji, Sergio Takeo
description The Price and Deadline Calculator (CPP) is a gratuitous webservice available on the Internet for freight consultations that receive between 8 and 28 thousand of daily queries. CPP constantly receives attacks in the form of queries that cause unavailability and slowness in the system. The current criteria used to solve this problem are not based on traffic volume, because it is costly and may eventually block valid customers. This work aims to propose a method of preventive detection of attacks against availability, based on a rankings/weights scheme that improves the accuracy and response time of detecting suspicious connections in a webservice. In the experiment, a voting scheme is created, generated from network traffic, where standard-based statistics and predefined rules are used to compose a ranking of suspicion for each query.
publishDate 2021
dc.date.none.fl_str_mv 2021-12-07
dc.type.status.fl_str_mv info:eu-repo/semantics/publishedVersion
dc.type.driver.fl_str_mv info:eu-repo/semantics/article
format article
status_str publishedVersion
dc.identifier.uri.fl_str_mv https://doi.org/10.34627/rcc.v16i0.263
https://doi.org/10.34627/rcc.v16i0.263
url https://doi.org/10.34627/rcc.v16i0.263
dc.language.iso.fl_str_mv por
language por
dc.relation.none.fl_str_mv https://journals.uab.pt/index.php/rcc/article/view/263
https://journals.uab.pt/index.php/rcc/article/view/263/218
dc.rights.driver.fl_str_mv Direitos de Autor (c) 2021 Universidade Aberta
http://creativecommons.org/licenses/by/4.0
info:eu-repo/semantics/openAccess
rights_invalid_str_mv Direitos de Autor (c) 2021 Universidade Aberta
http://creativecommons.org/licenses/by/4.0
eu_rights_str_mv openAccess
dc.format.none.fl_str_mv application/pdf
dc.publisher.none.fl_str_mv Universidade Aberta
publisher.none.fl_str_mv Universidade Aberta
dc.source.none.fl_str_mv Revista de Ciências da Computação; v. 16 (2021); 1-22
2182-1801
1646-6330
10.34627/rcc.v16i0
reponame:Repositório Científico de Acesso Aberto de Portugal (Repositórios Cientìficos)
instname:Agência para a Sociedade do Conhecimento (UMIC) - FCT - Sociedade da Informação
instacron:RCAAP
instname_str Agência para a Sociedade do Conhecimento (UMIC) - FCT - Sociedade da Informação
instacron_str RCAAP
institution RCAAP
reponame_str Repositório Científico de Acesso Aberto de Portugal (Repositórios Cientìficos)
collection Repositório Científico de Acesso Aberto de Portugal (Repositórios Cientìficos)
repository.name.fl_str_mv Repositório Científico de Acesso Aberto de Portugal (Repositórios Cientìficos) - Agência para a Sociedade do Conhecimento (UMIC) - FCT - Sociedade da Informação
repository.mail.fl_str_mv
_version_ 1799130593806516224