کد مقاله کد نشریه سال انتشار مقاله انگلیسی نسخه تمام متن
6885357 1444510 2018 11 صفحه PDF دانلود رایگان
عنوان انگلیسی مقاله ISI
New deep learning method to detect code injection attacks on hybrid applications
ترجمه فارسی عنوان
روش جدید یادگیری عمیق برای شناسایی حملات کد گذاری کد به برنامه های ترکیبی
کلمات کلیدی
تزریق کد برنامه ترکیبی درخت چکیده، یادگیری عمیق،
موضوعات مرتبط
مهندسی و علوم پایه مهندسی کامپیوتر شبکه های کامپیوتری و ارتباطات
چکیده انگلیسی
Mobile phones are becoming increasingly pervasive. Among them, HTML5-based hybrid applications are more and more popular because of their portability on different systems. However these applications suffer from code injection attacks. In this paper, we construct a novel deep learning network, Hybrid Deep Learning Network (HDLN), and use it to detect these attacks. At first, based on our previous work, we extract more features from Syntax Tree (AST) of JavaScript and employ three methods to select key features. Then we get the feature vectors and train HDLN to distinguish vulnerable applications from normal ones. Finally thorough experiments are done to validate our methods. The results show our detection approach with HDLN achieves 97.55% in accuracy and 97.60% in AUC, which outperforms those with other traditional classifiers and gets higher average precision than other detection methods.
ناشر
Database: Elsevier - ScienceDirect (ساینس دایرکت)
Journal: Journal of Systems and Software - Volume 137, March 2018, Pages 67-77
نویسندگان
, , , , ,