The IRMA Community
Newsletters
Research IRM
Click a keyword to search titles using our InfoSci-OnDemand powered search:
|
Fuzzy Rule-Based Vulnerability Assessment Framework for Web Applications
Abstract
This paper addresses the problem of assessing risk in web application due to implementation level vulnerabilities. In particular, the authors address the common research challenge of finding enough historical data to compute the probability of vulnerabilities and exploitations. They develop a Fuzzy Logic based System (FLS)1 to compute the risk uniformly and to address the diversity of risks. The authors propose a set of crisp metrics that are used to define fuzzy sets. They also develop a set of rule-bases to assess the risk level. The proposed FLS can be a useful tool to aid application developers and industry practitioners to assess the risk and plan ahead for employing necessary mitigation approaches. The authors evaluate their proposed approach using three real-world web applications implemented in PHP, and apply it to four types of common vulnerabilities. The initial results indicate that the proposed FLS approach can effectively discover high risk applications.
Related Content
Subhadip Kowar, Sneha Mukherjee, Shramana Ghosh.
© 2025.
26 pages.
|
C. V. Suresh Babu, Mala Raja Sekhar, A. Sachin, Bala Brindha.
© 2025.
26 pages.
|
A. D. N. Sarma.
© 2025.
32 pages.
|
Muhammad Usman Tariq.
© 2025.
26 pages.
|
Maaike Stoops, Pablo Alfonso Aguilar Calderón, Óscar Manuel Peña Bañuelos.
© 2025.
30 pages.
|
Pablo Alfonso Aguilar Calderón, José Alfonso Aguilar-Calderón, Dominik Morales-Silva, Carolina Tripp-Barba, Pedro Alfonso Aguilar-Calderón, Aníbal Zaldívar-Colado, Oscar Manuel Peña-Bañuelos.
© 2025.
30 pages.
|
Carlos Villarrubia, David Granada, Juan Manuel Vara.
© 2025.
34 pages.
|
|
|