Abstract

The rapid development of the Internet has brought great convenience to our lives. Correspondingly, the rapid development of the web relies on the continuous development of Internet infrastructure such as hardware and application software and related protocols. However, with the rapid development of Web applications, the security situation is not optimistic. Most Web applications have security vulnerabilities, and traditional network security devices have limited protection against attacks at the application layer. A traditional firewall can only protect the network layer. IDS and IPS cannot effectively protect against application layer attacks through flexible coding and packet segmentation. Therefore, this paper analyzes HTTP protocol and mainstream Web attacks and their bypass methods. Aiming at the shortcomings of HTTP protocol and pattern matching, this paper proposes a Web application firewall system based on feature matching. Experiments show that the Web application firewall system can defend against various web application layer attacks and effectively solve the omission problem of Web attack detection.

Full Text
Published version (Free)

Talk to us

Join us for a 30 min session where you can share your feedback and ask us any queries you have

Schedule a call