Developing a Data-Driven Web Attack Detector

  • Alisson Sol | Microsoft

Developing a Data-Driven Web Attack Detector

This work demonstrates how to benefit from usage logs in the implementation of a web attack detector. A partnership between Bing and Azure has been working on building a web attack detection module in order to have a WAF (Web Attack Firewall) that can block bad requests, with minimal interference in service operation.

The path going from traditional regular expression-based approaches to include machine learning modules is not a linear one, and focus on the data has been proven to be more important than experimentation with ML methods in the path towards both accuracy and runtime performance.

Speaker Details

Alisson Sol holds a B.Sc. in Physics and a M.Sc. in Computer Science, both from UFMG – Universidade Federal de Minas Gerais, Belo Horizonte, MG, Brazil. He is currently a SDE Lead for the Information Bridge Framework team. He has published papers in the areas of digital imaging, multimedia processing, and Software Engineering. Previous work at Microsoft include the products Application Center, BizTalk, and the Microsoft Business Framework.

    • Portrait of Alisson Sol

      Alisson Sol

    • Portrait of Jeff Running

      Jeff Running