Classifying Malicious Thread Behavior in PaaS Web Services

Cemile Diler Özdemir, Mehmet Tahir Sandıkkaya, Yusuf Yaslan

2018

Abstract

Multitenant structure of PaaS cloud delivery model allows customers to share the platform resources in the cloud. However, this structure requires a strong security mechanism that isolates customer applications to prevent interference between different applications. In this paper, a malicious thread behavior detection framework using machine learning algorithms is proposed to classify whether user requests are malicious. The framework uses thread metrics of worker threads and N-Gram frequencies of operations as its features. Test results are evaluated on a real-life scenario using Random Forest, Adaboost and Bagging ensemble learning algorithms and evaluated using different accuracy metrics. It is found that the malicious request detection accuracy of the proposed system is 87.6%.

Download


Paper Citation


in Harvard Style

Özdemir C., Sandıkkaya M. and Yaslan Y. (2018). Classifying Malicious Thread Behavior in PaaS Web Services.In Proceedings of the 8th International Conference on Cloud Computing and Services Science - Volume 1: CLOSER, ISBN 978-989-758-295-0, pages 418-425. DOI: 10.5220/0006688204180425


in Bibtex Style

@conference{closer18,
author={Cemile Diler Özdemir and Mehmet Tahir Sandıkkaya and Yusuf Yaslan},
title={Classifying Malicious Thread Behavior in PaaS Web Services},
booktitle={Proceedings of the 8th International Conference on Cloud Computing and Services Science - Volume 1: CLOSER,},
year={2018},
pages={418-425},
publisher={SciTePress},
organization={INSTICC},
doi={10.5220/0006688204180425},
isbn={978-989-758-295-0},
}


in EndNote Style

TY - CONF

JO - Proceedings of the 8th International Conference on Cloud Computing and Services Science - Volume 1: CLOSER,
TI - Classifying Malicious Thread Behavior in PaaS Web Services
SN - 978-989-758-295-0
AU - Özdemir C.
AU - Sandıkkaya M.
AU - Yaslan Y.
PY - 2018
SP - 418
EP - 425
DO - 10.5220/0006688204180425