Access Log Generator for Analyzing Malicious Website Browsing Behaviors

Chu‐Hsing Lin, Jung‐Chun Liu, Ching-Ru Chen · 2009

In recent years, the target of the denial-of-service attacks, such as the Http flooding attack, have been switched from the network layer to the application layer. Various attacking schemes are adopted by the attackers to break down the Web site server, some of them send tremendous amount of packets to break down the target host, others send specific request packets to keep the Web site server busy in performing great amount of computations or searches of the database. In order to develop a detection scheme to detect denial-of-service attacks, one needs log data for analysis of browsing behaviors of users. But suitable log data are not easy to obtain and some of available ones are out of date and are not appropriate for analyzing behaviors of present networks. So, we propose an access log generator to generate access logs with characteristics of browsing behaviors for the particular Web site under investigation. We also include malicious behaviors into the generated access log, which is combined with actual access log of the Web site for further tests and analyses.

Read the paper · More papers on PaperTik