@article{ART001662960},
author={최병하 and Sungkyo Choi and Kyungsan CHO},
title={Anomaly Detection Scheme of Web-based attacks by applying HMM to HTTP Outbound Traffic},
journal={Journal of The Korea Society of Computer and Information},
issn={1598-849X},
year={2012},
volume={17},
number={5},
pages={33-40},
doi={}
TY - JOUR
AU - 최병하
AU - Sungkyo Choi
AU - Kyungsan CHO
TI - Anomaly Detection Scheme of Web-based attacks by applying HMM to HTTP Outbound Traffic
JO - Journal of The Korea Society of Computer and Information
PY - 2012
VL - 17
IS - 5
PB - The Korean Society Of Computer And Information
SP - 33
EP - 40
SN - 1598-849X
AB - In this paper we propose an anomaly detection scheme to detect new attack paths or new attack methods without false positives by monitoring HTTP Outbound Traffic after efficient training. Our proposed scheme detects web-based attacks by comparing tags or javascripts of HTTP Outbound Traffic with normal behavioral models which apply HMM(Hidden Markov Model). Through the verification analysis under the real-attacked environment, we show that our scheme has superior detection capability of 0.0001% false positive and 96% detection rate.
KW - Web-based Attacks;HTTP Outbound Traffic;Anomaly Detection;HMM(Hidden Markov Model);HTML tag;Javascript
DO -
ER -
최병하, Sungkyo Choi and Kyungsan CHO. (2012). Anomaly Detection Scheme of Web-based attacks by applying HMM to HTTP Outbound Traffic. Journal of The Korea Society of Computer and Information, 17(5), 33-40.
최병하, Sungkyo Choi and Kyungsan CHO. 2012, "Anomaly Detection Scheme of Web-based attacks by applying HMM to HTTP Outbound Traffic", Journal of The Korea Society of Computer and Information, vol.17, no.5 pp.33-40. Available from: doi:
최병하, Sungkyo Choi, Kyungsan CHO "Anomaly Detection Scheme of Web-based attacks by applying HMM to HTTP Outbound Traffic" Journal of The Korea Society of Computer and Information 17.5 pp.33-40 (2012) : 33.
최병하, Sungkyo Choi, Kyungsan CHO. Anomaly Detection Scheme of Web-based attacks by applying HMM to HTTP Outbound Traffic. 2012; 17(5), 33-40. Available from: doi:
최병하, Sungkyo Choi and Kyungsan CHO. "Anomaly Detection Scheme of Web-based attacks by applying HMM to HTTP Outbound Traffic" Journal of The Korea Society of Computer and Information 17, no.5 (2012) : 33-40.doi:
최병하; Sungkyo Choi; Kyungsan CHO. Anomaly Detection Scheme of Web-based attacks by applying HMM to HTTP Outbound Traffic. Journal of The Korea Society of Computer and Information, 17(5), 33-40. doi:
최병하; Sungkyo Choi; Kyungsan CHO. Anomaly Detection Scheme of Web-based attacks by applying HMM to HTTP Outbound Traffic. Journal of The Korea Society of Computer and Information. 2012; 17(5) 33-40. doi:
최병하, Sungkyo Choi, Kyungsan CHO. Anomaly Detection Scheme of Web-based attacks by applying HMM to HTTP Outbound Traffic. 2012; 17(5), 33-40. Available from: doi:
최병하, Sungkyo Choi and Kyungsan CHO. "Anomaly Detection Scheme of Web-based attacks by applying HMM to HTTP Outbound Traffic" Journal of The Korea Society of Computer and Information 17, no.5 (2012) : 33-40.doi: