A Solution for Injection and Rewriting Attacks on SOAP Messages in Web Services Security
Phuoc Pham, Aziz Nasridinov, Qing Lin, Jeong‐Yong Byun · 2012
Once SOAP messages are used for the communication among web services, their integrity and confidentiality should be preserved. XML-based attacks have often been used on SOAP messages which create a foundation for typical faults and make them vulnerable to use. Web Services middleware have limitation in identifying these faults and possibly fixing them. Therefore to cope with the XML-based attacks, in this paper, we explore the security vulnerability of SOAP messages and propose a system which is able to automatically detect and fix typical faults occurred in SOAP messages due to XML Attacks.