7th IEEE International Workshop on Trusted Collaboration

Research Article

Method for Two Dimensional Honeypot in a Web Application

Download953 downloads
  • @INPROCEEDINGS{10.4108/icst.collaboratecom.2012.250743,
        author={Nader Nassar and Grant Miller},
        title={Method for Two Dimensional Honeypot in a Web Application},
        proceedings={7th IEEE International Workshop on Trusted Collaboration},
        publisher={IEEE},
        proceedings_a={TRUSTCOL},
        year={2012},
        month={12},
        keywords={honeypot ecommerce security vulnerability web applications},
        doi={10.4108/icst.collaboratecom.2012.250743}
    }
    
  • Nader Nassar
    Grant Miller
    Year: 2012
    Method for Two Dimensional Honeypot in a Web Application
    TRUSTCOL
    ICST
    DOI: 10.4108/icst.collaboratecom.2012.250743
Nader Nassar1,*, Grant Miller1
  • 1: IBM
*Contact email: nnassar@us.ibm.com

Abstract

Web applications Security is an ongoing dilemma as hackers and bots are getting more and more innovative bypassing the various defensive tools implemented to enforce security. e-Commerce Applications, such as those used for the check-out process, could be in a position of not providing a fair chance to all consumers. This is especially true when a commerce site offers hot inventory items where many traders are competing to get a limited supply item. What happens is the e-Commerce sites security is compromised when some of the traders utilize preformatted scripts/ spiders to place orders, thus giving them an unfair advantage The problem is: how to eliminate scripts/spiders in a given web application flow by using a solution that is non-practical to crack with no additional actions taken by the end user. Our paper introduces an innovative multilayer approach to honeypots cashing or bypassing it is technically impractical, resulting in well secured web forms.