Preventive method based on ranking and voting scheme for intrusion detection in webservice
Autor(a) principal: | |
---|---|
Data de Publicação: | 2021 |
Outros Autores: | , , , |
Tipo de documento: | Artigo |
Idioma: | por |
Título da fonte: | Repositório Científico de Acesso Aberto de Portugal (Repositórios Cientìficos) |
Texto Completo: | https://doi.org/10.34627/rcc.v16i0.263 |
Resumo: | The Price and Deadline Calculator (CPP) is a gratuitous webservice available on the Internet for freight consultations that receive between 8 and 28 thousand of daily queries. CPP constantly receives attacks in the form of queries that cause unavailability and slowness in the system. The current criteria used to solve this problem are not based on traffic volume, because it is costly and may eventually block valid customers. This work aims to propose a method of preventive detection of attacks against availability, based on a rankings/weights scheme that improves the accuracy and response time of detecting suspicious connections in a webservice. In the experiment, a voting scheme is created, generated from network traffic, where standard-based statistics and predefined rules are used to compose a ranking of suspicion for each query. |
id |
RCAP_825af9f3206c5152d9e1033b04ae69ed |
---|---|
oai_identifier_str |
oai:ojs2.journals.uab.pt:article/263 |
network_acronym_str |
RCAP |
network_name_str |
Repositório Científico de Acesso Aberto de Portugal (Repositórios Cientìficos) |
repository_id_str |
7160 |
spelling |
Preventive method based on ranking and voting scheme for intrusion detection in webserviceMétodo preventivo baseado em esquema de ranking para detecção de ataques contra a disponibilidade em webserviceThe Price and Deadline Calculator (CPP) is a gratuitous webservice available on the Internet for freight consultations that receive between 8 and 28 thousand of daily queries. CPP constantly receives attacks in the form of queries that cause unavailability and slowness in the system. The current criteria used to solve this problem are not based on traffic volume, because it is costly and may eventually block valid customers. This work aims to propose a method of preventive detection of attacks against availability, based on a rankings/weights scheme that improves the accuracy and response time of detecting suspicious connections in a webservice. In the experiment, a voting scheme is created, generated from network traffic, where standard-based statistics and predefined rules are used to compose a ranking of suspicion for each query.O Calculador de Preços e Prazos (CPP) é um webservice disponível gratuitamente na Internet para consulta de fretes que recebe entre 8 e 28 mil consultas diárias. Constantemente, o CPP sofre ataques na forma de consultas que causam indisponibilidade e lentidão no sistema. O atual critério usado para a resolução desse problema não tem por base o volume de tráfego, por ser oneroso e bloquear, eventualmente, clientes válidos. O objetivo deste trabalho é propor um método de detecção preventivo de ataques contra a disponibilidade, baseado em um esquema de rankings/pesos que melhore a precisão e o tempo de resposta da detecção de conexões suspeitas em um webservice. No experimento é criado um esquema de votação, gerado a partir do tráfego de rede, onde padrões baseados em estatística e regras pré-definidas são usados para compor um ranking de suspeição para cada consultaUniversidade Aberta2021-12-07info:eu-repo/semantics/publishedVersioninfo:eu-repo/semantics/articleapplication/pdfhttps://doi.org/10.34627/rcc.v16i0.263https://doi.org/10.34627/rcc.v16i0.263Revista de Ciências da Computação; v. 16 (2021); 1-222182-18011646-633010.34627/rcc.v16i0reponame:Repositório Científico de Acesso Aberto de Portugal (Repositórios Cientìficos)instname:Agência para a Sociedade do Conhecimento (UMIC) - FCT - Sociedade da Informaçãoinstacron:RCAAPporhttps://journals.uab.pt/index.php/rcc/article/view/263https://journals.uab.pt/index.php/rcc/article/view/263/218Direitos de Autor (c) 2021 Universidade Abertahttp://creativecommons.org/licenses/by/4.0info:eu-repo/semantics/openAccessDanta, Ligia Maria da SilvaGuelfi, Adilson Eduardoda Silva, Anderson Aparecido Alvesde Azevedo, Marcelo TeixeiraKofuji, Sergio Takeo2022-12-23T06:30:14Zoai:ojs2.journals.uab.pt:article/263Portal AgregadorONGhttps://www.rcaap.pt/oai/openaireopendoar:71602024-03-19T16:14:02.335670Repositório Científico de Acesso Aberto de Portugal (Repositórios Cientìficos) - Agência para a Sociedade do Conhecimento (UMIC) - FCT - Sociedade da Informaçãofalse |
dc.title.none.fl_str_mv |
Preventive method based on ranking and voting scheme for intrusion detection in webservice Método preventivo baseado em esquema de ranking para detecção de ataques contra a disponibilidade em webservice |
title |
Preventive method based on ranking and voting scheme for intrusion detection in webservice |
spellingShingle |
Preventive method based on ranking and voting scheme for intrusion detection in webservice Danta, Ligia Maria da Silva |
title_short |
Preventive method based on ranking and voting scheme for intrusion detection in webservice |
title_full |
Preventive method based on ranking and voting scheme for intrusion detection in webservice |
title_fullStr |
Preventive method based on ranking and voting scheme for intrusion detection in webservice |
title_full_unstemmed |
Preventive method based on ranking and voting scheme for intrusion detection in webservice |
title_sort |
Preventive method based on ranking and voting scheme for intrusion detection in webservice |
author |
Danta, Ligia Maria da Silva |
author_facet |
Danta, Ligia Maria da Silva Guelfi, Adilson Eduardo da Silva, Anderson Aparecido Alves de Azevedo, Marcelo Teixeira Kofuji, Sergio Takeo |
author_role |
author |
author2 |
Guelfi, Adilson Eduardo da Silva, Anderson Aparecido Alves de Azevedo, Marcelo Teixeira Kofuji, Sergio Takeo |
author2_role |
author author author author |
dc.contributor.author.fl_str_mv |
Danta, Ligia Maria da Silva Guelfi, Adilson Eduardo da Silva, Anderson Aparecido Alves de Azevedo, Marcelo Teixeira Kofuji, Sergio Takeo |
description |
The Price and Deadline Calculator (CPP) is a gratuitous webservice available on the Internet for freight consultations that receive between 8 and 28 thousand of daily queries. CPP constantly receives attacks in the form of queries that cause unavailability and slowness in the system. The current criteria used to solve this problem are not based on traffic volume, because it is costly and may eventually block valid customers. This work aims to propose a method of preventive detection of attacks against availability, based on a rankings/weights scheme that improves the accuracy and response time of detecting suspicious connections in a webservice. In the experiment, a voting scheme is created, generated from network traffic, where standard-based statistics and predefined rules are used to compose a ranking of suspicion for each query. |
publishDate |
2021 |
dc.date.none.fl_str_mv |
2021-12-07 |
dc.type.status.fl_str_mv |
info:eu-repo/semantics/publishedVersion |
dc.type.driver.fl_str_mv |
info:eu-repo/semantics/article |
format |
article |
status_str |
publishedVersion |
dc.identifier.uri.fl_str_mv |
https://doi.org/10.34627/rcc.v16i0.263 https://doi.org/10.34627/rcc.v16i0.263 |
url |
https://doi.org/10.34627/rcc.v16i0.263 |
dc.language.iso.fl_str_mv |
por |
language |
por |
dc.relation.none.fl_str_mv |
https://journals.uab.pt/index.php/rcc/article/view/263 https://journals.uab.pt/index.php/rcc/article/view/263/218 |
dc.rights.driver.fl_str_mv |
Direitos de Autor (c) 2021 Universidade Aberta http://creativecommons.org/licenses/by/4.0 info:eu-repo/semantics/openAccess |
rights_invalid_str_mv |
Direitos de Autor (c) 2021 Universidade Aberta http://creativecommons.org/licenses/by/4.0 |
eu_rights_str_mv |
openAccess |
dc.format.none.fl_str_mv |
application/pdf |
dc.publisher.none.fl_str_mv |
Universidade Aberta |
publisher.none.fl_str_mv |
Universidade Aberta |
dc.source.none.fl_str_mv |
Revista de Ciências da Computação; v. 16 (2021); 1-22 2182-1801 1646-6330 10.34627/rcc.v16i0 reponame:Repositório Científico de Acesso Aberto de Portugal (Repositórios Cientìficos) instname:Agência para a Sociedade do Conhecimento (UMIC) - FCT - Sociedade da Informação instacron:RCAAP |
instname_str |
Agência para a Sociedade do Conhecimento (UMIC) - FCT - Sociedade da Informação |
instacron_str |
RCAAP |
institution |
RCAAP |
reponame_str |
Repositório Científico de Acesso Aberto de Portugal (Repositórios Cientìficos) |
collection |
Repositório Científico de Acesso Aberto de Portugal (Repositórios Cientìficos) |
repository.name.fl_str_mv |
Repositório Científico de Acesso Aberto de Portugal (Repositórios Cientìficos) - Agência para a Sociedade do Conhecimento (UMIC) - FCT - Sociedade da Informação |
repository.mail.fl_str_mv |
|
_version_ |
1799130593806516224 |