Web Application Intrusion Detection System for Input Validation Attack

This paper presents Web application intrusion detection system (WAIDS); an intrusion detection method based on an anomaly intrusion detection model for detecting input validation attacks against web applications. Our approach is based on web application parameters which has identical structures and values. WAIDS derives a new intrusion detection method using generated profile from Web request data in normal situation. By doing this, it is possible to reduce analysis time and false positives rate. Experimental results show that our approach can detect input validation attacks effectively.