An Automated Approach to Generate Web Applications Attack Scenarios - Université Toulouse III - Paul Sabatier - Toulouse INP Accéder directement au contenu
Communication Dans Un Congrès Année : 2013

An Automated Approach to Generate Web Applications Attack Scenarios

Résumé

—Web applications have become one of the most popular targets of attacks during the last years. Therefore it is important to identify the vulnerabilities of such applications and to remove them to prevent potential attacks. This paper presents an approach that is aimed at the vulnerability assessment of Web applications following a black-box approach. The objective is to detect vulnerabilities in Web applications and their dependencies and to generate attack scenarios that reflect such dependencies. Our approach aims to move a step forward toward the automation of this process. The paper presents the main concepts behind the proposed approach and an example that illustrates the main steps of the algorithm leading to the identification of the vulnerabilities of a Web application and their dependencies.
Fichier principal
Vignette du fichier
LADC 2013-Alata-et-al.pdf (459.03 Ko) Télécharger le fichier
Origine : Fichiers produits par l'(les) auteur(s)
Loading...

Dates et versions

hal-01176046 , version 1 (14-07-2015)

Identifiants

Citer

Eric Alata, Mohamed Kaâniche, Vincent Nicomette, Rim Akrout. An Automated Approach to Generate Web Applications Attack Scenarios. The 6th Latin-American Symposium on Dependable Computing (LADC-2013), Apr 2013, Rio de Janeiro, Brazil. pp.78-85, ⟨10.1109/LADC.2013.22⟩. ⟨hal-01176046⟩
305 Consultations
419 Téléchargements

Altmetric

Partager

Gmail Facebook X LinkedIn More