Anomaly Detection on Web-User Behaviors Through Deep Learning

被引:1
|
作者
Gui, Jiaping [1 ]
Chen, Zhengzhang [1 ]
Yu, Xiao [1 ]
Lumezanu, Cristian [1 ]
Chen, Haifeng [1 ]
机构
[1] NEC Labs Amer Inc, Princeton, NJ 08540 USA
关键词
Web application; Abnormal behavior; Sequence-based attack; Deep learning; LSTM;
D O I
10.1007/978-3-030-63086-7_25
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The modern Internet has witnessed the proliferation of web applications that play a crucial role in the branding process among enterprises. Web applications provide a communication channel between potential customers and business products. However, web applications are also targeted by attackers due to sensitive information stored in these applications. Among web-related attacks, there exists a rising but more stealthy attack where attackers first access a web application on behalf of normal users based on stolen credentials. Then attackers follow a sequence of sophisticated steps to achieve the malicious purpose. Traditional security solutions fail to detect relevant abnormal behaviors once attackers login to the web application. To address this problem, we propose WebLearner, a novel system to detect abnormal web-user behaviors. As we demonstrate in the evaluation, WebLearner has an outstanding performance. In particular, it can effectively detect abnormal user behaviors with over 96% for both precision and recall rates using a reasonably small amount of normal training data.
引用
收藏
页码:467 / 473
页数:7
相关论文
共 50 条
  • [1] Detection of Anomaly User Behaviors Based on Deep Neural Networks
    Ding, Zhaoyun
    Liu, Lina
    Yu, Donghua
    Huang, Songping
    Zhang, Hang
    Liu, Kai
    2021 IEEE 20TH INTERNATIONAL CONFERENCE ON TRUST, SECURITY AND PRIVACY IN COMPUTING AND COMMUNICATIONS (TRUSTCOM 2021), 2021, : 1240 - 1245
  • [2] A Method for Anomaly Detection of User Behaviors Based on Machine Learning
    TIAN Xin-guang 1
    2.Department of Electronic Engineering
    3.Research Institute of Beijing Capitel Group Corporation
    4.Institute of Computing Technology
    The Journal of China Universities of Posts and Telecommunications, 2006, (02) : 61 - 65
  • [3] Automated Socket Anomaly Detection through Deep Learning
    Agrawal, Nidhi
    Yang, Min-Jian
    Xanthopoulos, Constantinos
    Thangamariappan, Vijayakumar
    Xiao, Joe
    Ho, Chee-Wah
    Schaub, Keith
    Leventhal, Ira
    2020 IEEE INTERNATIONAL TEST CONFERENCE (ITC), 2020,
  • [4] Road Anomaly Detection Through Deep Learning Approaches
    Luo, Dawei
    Lu, Jianbo
    Guo, Gang
    IEEE ACCESS, 2020, 8 : 117390 - 117404
  • [5] MapReduce-based web mining for prediction of web-user navigation
    Li, Meijing
    Yu, Xiuming
    Ryu, Keun Ho
    JOURNAL OF INFORMATION SCIENCE, 2014, 40 (05) : 557 - 567
  • [6] Web Application Firewall Based on Anomaly Detection using Deep Learning
    Toprak, Sezer
    Yavuz, Ali Gokhan
    ACTA INFOLOGICA, 2022, 6 (02): : 219 - 244
  • [7] Anomaly-Based Web Attack Detection: A Deep Learning Approach
    Liang, Jingxi
    Zhao, Wen
    Ye, Wei
    PROCEEDINGS OF 2017 VI INTERNATIONAL CONFERENCE ON NETWORK, COMMUNICATION AND COMPUTING (ICNCC 2017), 2017, : 80 - 85
  • [8] Deep Learning for Anomaly Detection
    Pang, Guansong
    Aggarwal, Charu
    Shen, Chunhua
    Sebe, Nicu
    IEEE TRANSACTIONS ON NEURAL NETWORKS AND LEARNING SYSTEMS, 2022, 33 (06) : 2282 - 2286
  • [9] Deep Learning for Anomaly Detection
    Wang, Ruoying
    Nie, Kexin
    Wang, Tie
    Yang, Yang
    Long, Bo
    PROCEEDINGS OF THE 13TH INTERNATIONAL CONFERENCE ON WEB SEARCH AND DATA MINING (WSDM '20), 2020, : 894 - 896
  • [10] Deep Learning for Anomaly Detection
    Wang, Ruoying
    Nie, Kexin
    Chang, Yen-Jung
    Gong, Xinwei
    Wang, Tie
    Yang, Yang
    Long, Bo
    KDD '20: PROCEEDINGS OF THE 26TH ACM SIGKDD INTERNATIONAL CONFERENCE ON KNOWLEDGE DISCOVERY & DATA MINING, 2020, : 3569 - 3570