loading
Papers Papers/2022 Papers Papers/2022

Research.Publish.Connect.

Paper

Authors: Miguel Calvo and Marta Beltrán

Affiliation: Department of Computing, ETSII, Universidad Rey Juan Carlos, Madrid, Spain

Keyword(s): Adaptive Controls, Risk-based Security, Web Application Firewall.

Abstract: Web Application Firewalls (WAFs) are security products responsible for protecting web applications with minimal cost and effort; by filtering, monitoring, and blocking HTTP traffic. Traditional WAFs work with a rule-based approach, applying predetermined rules when the signatures of known attack patterns or traffic anomalies are identified. This kind of design has suffered significant limitations in specific contexts since it is impossible to configure the WAF the first time and rely on that configuration over time. This paper proposes an adaptive WAF capable of context-aware risk-based adaptation, changing its configuration to every specific scenario, depending on the current value of risk indicators and on the level of risk tolerated at any given time. The proposed solution is implemented, validated and evaluated in a real use case.

CC BY-NC-ND 4.0

Sign In Guest: Register as new SciTePress user now for free.

Sign In SciTePress user: please login.

PDF ImageMy Papers

You are not signed in, therefore limits apply to your IP address 3.137.218.215

In the current month:
Recent papers: 100 available of 100 total
2+ years older papers: 200 available of 200 total

Paper citation in several formats:
Calvo, M. and Beltrán, M. (2022). An Adaptive Web Application Firewall. In Proceedings of the 19th International Conference on Security and Cryptography - SECRYPT; ISBN 978-989-758-590-6; ISSN 2184-7711, SciTePress, pages 96-107. DOI: 10.5220/0011146900003283

@conference{secrypt22,
author={Miguel Calvo. and Marta Beltrán.},
title={An Adaptive Web Application Firewall},
booktitle={Proceedings of the 19th International Conference on Security and Cryptography - SECRYPT},
year={2022},
pages={96-107},
publisher={SciTePress},
organization={INSTICC},
doi={10.5220/0011146900003283},
isbn={978-989-758-590-6},
issn={2184-7711},
}

TY - CONF

JO - Proceedings of the 19th International Conference on Security and Cryptography - SECRYPT
TI - An Adaptive Web Application Firewall
SN - 978-989-758-590-6
IS - 2184-7711
AU - Calvo, M.
AU - Beltrán, M.
PY - 2022
SP - 96
EP - 107
DO - 10.5220/0011146900003283
PB - SciTePress