International Journal of Computer Applications |
Foundation of Computer Science (FCS), NY, USA |
Volume 67 - Number 9 |
Year of Publication: 2013 |
Authors: M. Sujitha, P. Suganya, T. Shampavi, S. Anjanaa |
10.5120/11421-6759 |
M. Sujitha, P. Suganya, T. Shampavi, S. Anjanaa . Dual Safeguard: Intrusion Detection and Prevention System in Web Applications. International Journal of Computer Applications. 67, 9 ( April 2013), 13-18. DOI=10.5120/11421-6759
Web applications are the most universal way to make services and data accessible on the Internet. With the increase in the use of these applications, there has also been an increase in the amount and complexity of vulnerabilities and attacks. These attacks target directly the back-end database systems of the web application to achieve information. In this paper, a Dual Safeguard Intrusion Detection and Prevention System was proposed to models the user network behaviors and create normality models of isolated user sessions across both front-end and back-end of the application. To accomplish this, a Lightweight virtualization technique is used to allocate each user's web session to a dedicated container, providing an isolated virtual computing environment. An Intrusion Detection Model for web applications based on Hidden Markov Model was also proposed.