Design and Implementation of A Vulnerability-Tolerant Reverse Proxy Based on Moving Target Defense for E-Government Application

Autor: Zuwei Yu, Yongshun Xu, Liegang Han, Zhongyong Chen
Rok vydání: 2021
Předmět:
Zdroj: 2021 2nd Information Communication Technologies Conference (ICTC).
DOI: 10.1109/ictc51749.2021.9441622
Popis: The digital transformation is injecting energy into economic growth and governance improvement for the china government. Digital governance and e-government services are playing a more and more important role in public management and social governance. Meanwhile, cyber-attacks and threats become the major challenges for e-government application systems. In this paper, we proposed a novel dynamic access entry scheme for web application, which provide a rapidly-changing defender-controlled attack surface based on Moving Target Defense (MTD) technology. The scheme can turn the static keywords of Uniform Resource Locator (URL) into the dynamic and random ones, which significantly increase the cost to adversaries attack. We present the prototype of the proposed scheme and evaluate the feasibility and effectiveness. The experimental results demonstrated the scheme is practical and effective.
Databáze: OpenAIRE