Sunday 23 August 2009

Wseas Transactions

New Subscription to Wseas Transactions

The following information was submitted:

Transactions: WSEAS TRANSACTIONS ON INFORMATION SCIENCE AND APPLICATIONS
Transactions ID Number: 32-735
Full Name: Raymond Wu
Position: Doctor (Researcher)
Age: ON
Sex: Male
Address: Aizu
Country: JAPAN
Tel:
Tel prefix:
Fax:
E-mail address: rwu_paper@yahoo.com
Other E-mails:
Title of the Paper: The Architectural Review of Web Security in Static and Dynamic Analysis
Authors as they appear in the Paper:
Email addresses of all the authors:
Number of paper pages: 17
Abstract: Our objective in web security is to move black box to white box in enterprise practices. In this paper, we explain how our approaches achieve the goal in terms of static and dynamic analysis. To better explain the framework and roadmap of analysis work, we describe our approaches by using macro and micro views individually. Based on this foundation, we explore dynamic analysis in string validation and node tracking, and introduce micro and macro views to architect comprehensive approaches. Our evaluation reflects that a configurable and well-tuned topology helps architectural collaboration, consequently it achieve a better security governance. Pattern matching process has been commonly adopted in SQL vulnerability detection however, the approach fail to extend a full coverage to an effective detection of those hidden variables initiated by attackers. Consequently the embedded SQL injection and security bypass can cause massive taint distribution and illegal dat!
a manipulation. This paper further introduces a token based framing and filtering process to move SQL validation into semantic analysis, hence SQL frame and variables can be isolated, and validated against a token-based algorithmic check. The approach achieves accuracy, early detection of malicious data, and fast responsiveness.
Keywords: vulnerability, web security, validation, tracking, static analysis, dynamic analysis, automata
EXTENSION of the file: .doc
Special (Invited) Session:
Organizer of the Session:
How Did you learn about congress:
IP ADDRESS: 123.50.207.118