DIGITAL SECURITY AND INFORMATION ASSURANCE


This blog is created to stimulate academic discussion in partial fulfillment of the degree of Doctorate of Computer Science in DIGITAL SECURITY AND INFORMATION ASSURANCE for the Colorado Technical University, Colorado Springs, Colorado.

Courses includes - EM835 Information Accountability and Web Privacy Strategies; SC862 Digital Security; Quantitative Analysis; Software Architecture and Design - CS854;















Sunday, March 30, 2014

Detection of LDAP injection atttack using Big Data Analytic tool in a distributed environment.



Privacy and computer security problems are the two major hindrances affecting the use of information technology since the early nineties. The use of the Internet for delivering services by organizations not alone fuel the issue but make it difficult to control. Hackers are always two steps ahead of conventional security solutions. Web applications are increasingly prone to attack because of known vulnerabilities and zero day attacks.
As a doctorate candidate, my work is researching the use of Big Data security analytic (BDSA) tools to detect LDAP misuse in a distributed environment. The misuse of LDAP is ultimately responsible for most LDAP injection attacks in LDAP-enabled web applications. By detecting LDAP misuse, Big Data Analytic tool will be able to stop injection attack in real or near-real time. Other security solutions out there are too slow to detect and stop injection attacks because of the latency and lack of event correlations among other reasons. Check back as information on the research will be made available timely.