Evolutionary scanner of web application vulnerabilities

4Citations
Citations of this article
9Readers
Mendeley users who have this article in their library.
Get full text

Abstract

With every passing year, there are more and more websites, which often process sensitive and/or valuable information. Due to models like Continuous Development, manual testing and code review are reduced to minimum, with new features implemented and deployed even on the same day. This calls for development of new automated testing methods, especially the ones that will allow for identification of potential security issues. In this article such a new method, which is based on automated web pages comparisons, clustering and grammatical evolution is proposed. This method allows for automated testing of a website and can identify outstanding (unusual) web pages. Such pages can then be further investigated by checking if they are legitimate, contain some unused modules or potential threats to application security. The proposed method can identify such anomalous pages within the set of interlinked web pages, but can also find web pages that are not linked to any other web page on the server by utilizing genetic-based generation of URLs.

Cite

CITATION STYLE

APA

Pałka, D., Zachara, M., & Wójcik, K. (2016). Evolutionary scanner of web application vulnerabilities. In Communications in Computer and Information Science (Vol. 608, pp. 384–396). Springer Verlag. https://doi.org/10.1007/978-3-319-39207-3_33

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free