Friday 19th of April 2024
 

Host-based Web Anomaly Intrusion Detection System, an Artificial Immune System Approach


Iman Khalkhali, Reza Azmi, Mozhgan Azimpour-Kivi and Mohammad Khansari

Recently, the shortcomings of current security solutions in protecting web servers and web applications against web-based attacks have encouraged many researchers to work on web intrusion detection systems (WIDSs). In this paper, a host-based web anomaly detection system is presented which analyzes the POST and GET requests processed and logged in web servers access log files. A special kind of web access log file is introduced which eliminates the shortcomings of common log files for defining legitimate users sessions boundaries. Different features are extracted from this access log file in order to model the operations of the system. For the detection task, we propose the use of a novel approach inspired by the natural immune system. The capability of the proposed mechanism is evaluated by comparing the results to some well-known neural networks. The results indicate high ability of the immune inspired system in detecting suspicious activities.

Keywords: Host-based Web Anomaly IDS, Enhanced Custom Log File, Artificial Immune System, Negative Selection Algorithm, Neural Network

Download Full-Text


ABOUT THE AUTHORS

Iman Khalkhali
School of Engineering and Science, Sharif University of Technology-International Campus Kish Island, Iran

Reza Azmi
Department of Computer Engineering, Alzahra University Tehran, Iran

Mozhgan Azimpour-Kivi
School of Engineering and Science, Sharif University of Technology-International Campus Kish Island, Iran

Mohammad Khansari
Departmen of Network Science and Technology, Faculty of New Science and Technology, University of Tehran


IJCSI Published Papers Indexed By:

 

 

 

 
+++
About IJCSI

IJCSI is a refereed open access international journal for scientific papers dealing in all areas of computer science research...

Learn more »
Join Us
FAQs

Read the most frequently asked questions about IJCSI.

Frequently Asked Questions (FAQs) »
Get in touch

Phone: +230 911 5482
Email: info@ijcsi.org

More contact details »