A Framework to Mitigate Attacks in Web Applications

Rejwan Bin Sulaiman, Masud Ahmed Rahi · SSRN Electronic Journal · 2020

The honeypots that are available in the market are very flexible tools for participating in security defence. Of course, these are the tools that are meant to be targeted in order to achieve more knowledge about the cyber attacker, their intentions, and the tools they use to gain access or attack. But now, from that specific definition, they have evolved. In the security field, the concept of the honey trap is not recent; however, commercial honeypot has not endured sufficient improvements as it should have. Web application honeypots have an area of expertise of revealing problems about DNS, DDoS and DHCP. However, research in the field of SQL injection, XSS and command injection is still underway. The paper attempts to assess the endpoint results and log files in the honeypot, and observe the effects of the honeypot used in the monitoring industry. The focus of the study would indeed be different techniques of manipulation which can be used to test with honeypots. Finally, the paper suggests a systematic approach to web application developers to minimize the web application vulnerabilities in order to maximize the prevention of vulnerabilities of web apps.

Read the paper · More papers on PaperTik