{"about":{"site":"https://codewithpapers.app","non_affiliation":"Code with Papers and Syntology are not affiliated with, endorsed by, or sponsored by Papers with Code, Meta, or the pwc-archive mirror.","licence":"CC BY-SA 4.0","licence_url":"https://creativecommons.org/licenses/by-sa/4.0/legalcode","attribution":"https://codewithpapers.app/attribution","modified":"archive material modified by Syntology; see the attribution page"},"url":"/paper/detecting-and-explaining-anomalies-caused-by","title":"Detecting and Explaining Anomalies Caused by Web Tamper Attacks via Building Consistency-based Normality","arxiv_id":null,"date":"2024-10-27","proceeding":"ASE 2024 10","authors":["Yifan Liao","Ming Xu","Yun Lin","Xiwen Teoh","Xiaofei Xie","Ruitao Feng","Frank Liaw","Hongyu Zhang","Jin Song Dong"],"abstract":"Web applications are crucial infrastructures in the modern society, which have high demand of reliability and security. However, their frontend can be manipulable by the clients (e.g., the frontend code can be modified to bypass some validation steps), which incurs the runtime anomaly when operating the web service. Existing state-of-the-art anomaly detectors largely learn a deep learning model from the collected logs to predict abnormal logs with a probability. While effective in general, those approaches can suffer from (1) inaccuracy caused by subtle difference between the normal and abnormal/attack logs and (2) additional efforts for root cause analysis.","url_abs":"https://dl.acm.org/doi/10.1145/3691620.3695024","url_pdf":"https://dl.acm.org/doi/pdf/10.1145/3691620.3695024","source":{"archive":"pwc-archive (Hugging Face), CC BY-SA 4.0","snapshot":"2025-07-28","licence_url":"https://creativecommons.org/licenses/by-sa/4.0/legalcode","row_kind":"abstracts"},"code_links":[{"paper_slug":"detecting-and-explaining-anomalies-caused-by","repo_url":"https://github.com/JasonBourne1998/Webnorm","is_official":0,"mentioned_in_paper":0,"mentioned_in_github":0,"framework":"none","reach":null}],"tasks":[],"methods":[{"method_slug":null,"method_name":null}],"datasets_introduced":[],"methods_introduced":[],"results":[],"syntology":{"syntology_url":null,"atlas_url":null,"mcp":null,"developers":"https://syntology.ai/developers"},"arxiv_metadata":null,"syntology_extracted_results":null}