International Journal Of Engineering And Computer Science
A novel attack detection scheme is proposed to prevent web proxy based http attacks. Here the detection is carried out at server. The scheme utilizes locality behaviors such as temporal and spatial localities to obtain features of proxy-to-server traffic. A gaussian-mixture and gamma distribution hidden semi markov model is used to describe the time-varying traffic behavior of web proxies. Soft control scheme is used as the attack response it convert malicious traffic into relatively normal one by behavior reshaping rather than rudely discarding so that legitimate users get service and prevent attacker from receiving service.