{"id":"https://openalex.org/W2012909947","doi":"https://doi.org/10.1145/1141277.1141361","title":"An anomaly-driven reverse proxy for web applications","display_name":"An anomaly-driven reverse proxy for web applications","publication_year":2006,"publication_date":"2006-04-23","ids":{"openalex":"https://openalex.org/W2012909947","doi":"https://doi.org/10.1145/1141277.1141361","mag":"2012909947"},"language":"en","primary_location":{"id":"doi:10.1145/1141277.1141361","is_oa":false,"landing_page_url":"https://doi.org/10.1145/1141277.1141361","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2006 ACM symposium on Applied computing","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5111942664","display_name":"Fredrik Valeur","orcid":null},"institutions":[{"id":"https://openalex.org/I154570441","display_name":"University of California, Santa Barbara","ror":"https://ror.org/02t274463","country_code":"US","type":"education","lineage":["https://openalex.org/I154570441"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Fredrik Valeur","raw_affiliation_strings":["University of California, Santa Barbara","University of California,Santa Barbara,"],"affiliations":[{"raw_affiliation_string":"University of California, Santa Barbara","institution_ids":["https://openalex.org/I154570441"]},{"raw_affiliation_string":"University of California,Santa Barbara,","institution_ids":["https://openalex.org/I154570441"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5075685499","display_name":"Giovanni Vigna","orcid":"https://orcid.org/0000-0002-3422-5369"},"institutions":[{"id":"https://openalex.org/I154570441","display_name":"University of California, Santa Barbara","ror":"https://ror.org/02t274463","country_code":"US","type":"education","lineage":["https://openalex.org/I154570441"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Giovanni Vigna","raw_affiliation_strings":["University of California, Santa Barbara","University of California,Santa Barbara,"],"affiliations":[{"raw_affiliation_string":"University of California, Santa Barbara","institution_ids":["https://openalex.org/I154570441"]},{"raw_affiliation_string":"University of California,Santa Barbara,","institution_ids":["https://openalex.org/I154570441"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5022177364","display_name":"Christopher Kruegel","orcid":"https://orcid.org/0000-0001-5140-3414"},"institutions":[{"id":"https://openalex.org/I121760703","display_name":"University of Applied Sciences Technikum Wien","ror":"https://ror.org/04jsx0x49","country_code":"AT","type":"education","lineage":["https://openalex.org/I121760703"]}],"countries":["AT"],"is_corresponding":false,"raw_author_name":"Christopher Kruegel","raw_affiliation_strings":["Technical University, Vienna"],"affiliations":[{"raw_affiliation_string":"Technical University, Vienna","institution_ids":["https://openalex.org/I121760703"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5077875821","display_name":"Engin Kirda","orcid":"https://orcid.org/0000-0001-9988-6873"},"institutions":[{"id":"https://openalex.org/I121760703","display_name":"University of Applied Sciences Technikum Wien","ror":"https://ror.org/04jsx0x49","country_code":"AT","type":"education","lineage":["https://openalex.org/I121760703"]}],"countries":["AT"],"is_corresponding":false,"raw_author_name":"Engin Kirda","raw_affiliation_strings":["Technical University, Vienna"],"affiliations":[{"raw_affiliation_string":"Technical University, Vienna","institution_ids":["https://openalex.org/I121760703"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5111942664"],"corresponding_institution_ids":["https://openalex.org/I154570441"],"apc_list":null,"apc_paid":null,"fwci":2.52,"has_fulltext":false,"cited_by_count":27,"citation_normalized_percentile":{"value":0.90114653,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":89,"max":96},"biblio":{"volume":null,"issue":null,"first_page":"361","last_page":"368"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11598","display_name":"Internet Traffic Analysis and Secure E-voting","score":0.9993000030517578,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9991999864578247,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8025404214859009},{"id":"https://openalex.org/keywords/web-server","display_name":"Web server","score":0.6643876433372498},{"id":"https://openalex.org/keywords/false-positive-paradox","display_name":"False positive paradox","score":0.6379035711288452},{"id":"https://openalex.org/keywords/the-internet","display_name":"The Internet","score":0.627653956413269},{"id":"https://openalex.org/keywords/server","display_name":"Server","score":0.5995522141456604},{"id":"https://openalex.org/keywords/web-application","display_name":"Web application","score":0.5187357068061829},{"id":"https://openalex.org/keywords/web-application-security","display_name":"Web application security","score":0.48285824060440063},{"id":"https://openalex.org/keywords/proxy","display_name":"Proxy (statistics)","score":0.4379720985889435},{"id":"https://openalex.org/keywords/web-page","display_name":"Web page","score":0.43091917037963867},{"id":"https://openalex.org/keywords/world-wide-web","display_name":"World Wide Web","score":0.3724764585494995},{"id":"https://openalex.org/keywords/web-development","display_name":"Web development","score":0.2637760043144226}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8025404214859009},{"id":"https://openalex.org/C11392498","wikidata":"https://www.wikidata.org/wiki/Q11288","display_name":"Web server","level":3,"score":0.6643876433372498},{"id":"https://openalex.org/C64869954","wikidata":"https://www.wikidata.org/wiki/Q1859747","display_name":"False positive paradox","level":2,"score":0.6379035711288452},{"id":"https://openalex.org/C110875604","wikidata":"https://www.wikidata.org/wiki/Q75","display_name":"The Internet","level":2,"score":0.627653956413269},{"id":"https://openalex.org/C93996380","wikidata":"https://www.wikidata.org/wiki/Q44127","display_name":"Server","level":2,"score":0.5995522141456604},{"id":"https://openalex.org/C118643609","wikidata":"https://www.wikidata.org/wiki/Q189210","display_name":"Web application","level":2,"score":0.5187357068061829},{"id":"https://openalex.org/C59241245","wikidata":"https://www.wikidata.org/wiki/Q4781497","display_name":"Web application security","level":4,"score":0.48285824060440063},{"id":"https://openalex.org/C2780148112","wikidata":"https://www.wikidata.org/wiki/Q1432581","display_name":"Proxy (statistics)","level":2,"score":0.4379720985889435},{"id":"https://openalex.org/C21959979","wikidata":"https://www.wikidata.org/wiki/Q36774","display_name":"Web page","level":2,"score":0.43091917037963867},{"id":"https://openalex.org/C136764020","wikidata":"https://www.wikidata.org/wiki/Q466","display_name":"World Wide Web","level":1,"score":0.3724764585494995},{"id":"https://openalex.org/C79373723","wikidata":"https://www.wikidata.org/wiki/Q386275","display_name":"Web development","level":3,"score":0.2637760043144226},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.0}],"mesh":[],"locations_count":3,"locations":[{"id":"doi:10.1145/1141277.1141361","is_oa":false,"landing_page_url":"https://doi.org/10.1145/1141277.1141361","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2006 ACM symposium on Applied computing","raw_type":"proceedings-article"},{"id":"pmh:oai:CiteSeerX.psu:10.1.1.526.912","is_oa":false,"landing_page_url":"http://citeseerx.ist.psu.edu/viewdoc/summary?doi=10.1.1.526.912","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"http://www.seclab.tuwien.ac.at/papers/reverseproxy.pdf","raw_type":"text"},{"id":"pmh:oai:CiteSeerX.psu:10.1.1.640.7452","is_oa":false,"landing_page_url":"http://citeseerx.ist.psu.edu/viewdoc/summary?doi=10.1.1.640.7452","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"http://www.cs.ucsb.edu/~chris/research/doc/sac06_reverse.pdf","raw_type":"text"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":12,"referenced_works":["https://openalex.org/W1112477","https://openalex.org/W1501782359","https://openalex.org/W1510508184","https://openalex.org/W1510820885","https://openalex.org/W1674877186","https://openalex.org/W2103378897","https://openalex.org/W2117668559","https://openalex.org/W2126107976","https://openalex.org/W2159677016","https://openalex.org/W4285719527","https://openalex.org/W6600040955","https://openalex.org/W6630182988"],"related_works":["https://openalex.org/W2376164011","https://openalex.org/W1594341569","https://openalex.org/W1511683926","https://openalex.org/W2124796039","https://openalex.org/W1527427713","https://openalex.org/W2072426277","https://openalex.org/W2378014086","https://openalex.org/W1980587312","https://openalex.org/W2378312056","https://openalex.org/W2884320726"],"abstract_inverted_index":{"Careless":[0],"development":[1],"of":[2,25,78,91,125,132],"web-based":[3,39,144],"applications":[4],"results":[5],"in":[6],"vulnerable":[7],"code":[8],"being":[9],"deployed":[10],"and":[11,66,135,153],"made":[12],"available":[13],"to":[14,72,85,89,107,118,141],"the":[15,23,53,92,123],"whole":[16],"Internet,":[17],"creating":[18],"easily-exploitable":[19],"entry":[20],"points":[21],"for":[22],"compromise":[24],"entire":[26],"networks.":[27],"To":[28],"ameliorate":[29],"this":[30],"situation,":[31],"we":[32],"propose":[33],"an":[34],"approach":[35,49,134,149],"that":[36,55,95,113,147],"composes":[37],"a":[38,44,56,79,130],"anomaly":[40,76],"detection":[41],"system":[42],"with":[43,139],"reverse":[45],"HTTP":[46],"proxy.":[47],"The":[48,75],"is":[50,82,105,150],"based":[51],"on":[52],"assumption":[54],"web":[57,80,93],"site's":[58],"content":[59],"can":[60],"be":[61],"split":[62],"into":[63],"security":[64],"sensitive":[65,99,119],"non-sensitive":[67],"parts,":[68],"which":[69],"are":[70],"distributed":[71],"different":[73],"servers.":[74],"score":[77],"request":[81],"then":[83],"used":[84],"route":[86],"suspicious":[87],"requests":[88,112],"copies":[90],"site":[94],"do":[96,114],"not":[97,115],"hold":[98],"content.":[100],"By":[101],"doing":[102],"this,":[103],"it":[104],"possible":[106],"serve":[108],"anomalous":[109],"but":[110],"benign":[111],"require":[116],"access":[117],"information,":[120],"sensibly":[121],"reducing":[122],"impact":[124],"false":[126],"positives.":[127],"We":[128],"developed":[129],"prototype":[131],"our":[133,148],"evaluated":[136],"its":[137],"applicability":[138],"respect":[140],"several":[142],"existing":[143],"applications,":[145],"showing":[146],"both":[151],"feasible":[152],"effective.":[154]},"counts_by_year":[{"year":2025,"cited_by_count":2},{"year":2022,"cited_by_count":1},{"year":2020,"cited_by_count":1},{"year":2019,"cited_by_count":1},{"year":2018,"cited_by_count":1},{"year":2017,"cited_by_count":2},{"year":2014,"cited_by_count":2},{"year":2013,"cited_by_count":2}],"updated_date":"2026-04-04T16:13:02.066488","created_date":"2025-10-10T00:00:00"}
