{"title":"通过ModSecurity自定义规则发现和缓解Web应用程序漏洞的框架","authors":"Trapti Jain, Nakul Jain","doi":"10.1109/SPIN.2019.8711673","DOIUrl":null,"url":null,"abstract":"In the current era, Digitization has taken day-to-day utilities starting from a cab to grossary on the internet. All the service providers heavily leverage IT and IT Services. Web Application plays a significant role in providing these services. While Digital opens infinite opportunities to increase business and enhance delivery, it also exposes business to an unseen world of cyber-attacks. To prevent the business from digital dysfunctioning, organizations pro-actively and continuously perform Vulnerability Assessments & Penetration Tests on their IT Assets (i.e. Web Applications, Network Devices, Servers, Security Devices, etc.). However, quite often such scans become time consuming and generate unreliable results and none of the tools can find out the effective vulnerability. However, with a set of combined tools in one framework, it is possible to increase the coverage of vulnerability issues. The aim of the research is to present two approaches: (1) Web application vulnerability discovery through a set of web application vulnerability scanners and its integration on the same framework (python as scripting engine) using multi-threading technique (to reduce the scan time). (2) Mitigation of the detected web application vulnerabilities by customizing configuration rules through web application firewall ModSecurity.","PeriodicalId":344030,"journal":{"name":"2019 6th International Conference on Signal Processing and Integrated Networks (SPIN)","volume":"55 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2019-03-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"7","resultStr":"{\"title\":\"Framework for Web Application Vulnerability Discovery and Mitigation by Customizing Rules Through ModSecurity\",\"authors\":\"Trapti Jain, Nakul Jain\",\"doi\":\"10.1109/SPIN.2019.8711673\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"In the current era, Digitization has taken day-to-day utilities starting from a cab to grossary on the internet. All the service providers heavily leverage IT and IT Services. Web Application plays a significant role in providing these services. While Digital opens infinite opportunities to increase business and enhance delivery, it also exposes business to an unseen world of cyber-attacks. To prevent the business from digital dysfunctioning, organizations pro-actively and continuously perform Vulnerability Assessments & Penetration Tests on their IT Assets (i.e. Web Applications, Network Devices, Servers, Security Devices, etc.). However, quite often such scans become time consuming and generate unreliable results and none of the tools can find out the effective vulnerability. However, with a set of combined tools in one framework, it is possible to increase the coverage of vulnerability issues. The aim of the research is to present two approaches: (1) Web application vulnerability discovery through a set of web application vulnerability scanners and its integration on the same framework (python as scripting engine) using multi-threading technique (to reduce the scan time). (2) Mitigation of the detected web application vulnerabilities by customizing configuration rules through web application firewall ModSecurity.\",\"PeriodicalId\":344030,\"journal\":{\"name\":\"2019 6th International Conference on Signal Processing and Integrated Networks (SPIN)\",\"volume\":\"55 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2019-03-01\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"7\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2019 6th International Conference on Signal Processing and Integrated Networks (SPIN)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/SPIN.2019.8711673\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2019 6th International Conference on Signal Processing and Integrated Networks (SPIN)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/SPIN.2019.8711673","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
Framework for Web Application Vulnerability Discovery and Mitigation by Customizing Rules Through ModSecurity
In the current era, Digitization has taken day-to-day utilities starting from a cab to grossary on the internet. All the service providers heavily leverage IT and IT Services. Web Application plays a significant role in providing these services. While Digital opens infinite opportunities to increase business and enhance delivery, it also exposes business to an unseen world of cyber-attacks. To prevent the business from digital dysfunctioning, organizations pro-actively and continuously perform Vulnerability Assessments & Penetration Tests on their IT Assets (i.e. Web Applications, Network Devices, Servers, Security Devices, etc.). However, quite often such scans become time consuming and generate unreliable results and none of the tools can find out the effective vulnerability. However, with a set of combined tools in one framework, it is possible to increase the coverage of vulnerability issues. The aim of the research is to present two approaches: (1) Web application vulnerability discovery through a set of web application vulnerability scanners and its integration on the same framework (python as scripting engine) using multi-threading technique (to reduce the scan time). (2) Mitigation of the detected web application vulnerabilities by customizing configuration rules through web application firewall ModSecurity.