An Adaptive Web Application Firewall

4Citations
Citations of this article
26Readers
Mendeley users who have this article in their library.
Get full text

Abstract

Web Application Firewalls (WAFs) are security products responsible for protecting web applications with minimal cost and effort; by filtering, monitoring, and blocking HTTP traffic. Traditional WAFs work with a rule-based approach, applying predetermined rules when the signatures of known attack patterns or traffic anomalies are identified. This kind of design has suffered significant limitations in specific contexts since it is impossible to configure the WAF the first time and rely on that configuration over time. This paper proposes an adaptive WAF capable of context-aware risk-based adaptation, changing its configuration to every specific scenario, depending on the current value of risk indicators and on the level of risk tolerated at any given time. The proposed solution is implemented, validated and evaluated in a real use case.

Cite

CITATION STYLE

APA

Calvo, M., & Beltrán, M. (2022). An Adaptive Web Application Firewall. In Proceedings of the International Conference on Security and Cryptography (Vol. 1, pp. 96–107). Science and Technology Publications, Lda. https://doi.org/10.5220/0011146900003283

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free