Title
A Metamodel for Web Application Injection Attacks and Countermeasures.
Abstract
Web application injection attacks such as cross site scripting and SQL injection are common and problematic for enterprises. In order to defend against them, practitioners with large heterogeneous system architectures and limited resources struggle to understand the effectiveness of different countermeasures under various conditions. This paper presents an enterprise architecture metamodel that can be used by enterprise decision makers when deciding between different countermeasures for web application injection attacks. The scope of the model is to provide low-effort guidance on an abstraction level of use for an enterprise decision maker. This metamodel is based on a literature review and revised according to the judgment by six domain experts identified through peer-review.
Year
DOI
Venue
2012
10.1007/978-3-642-34163-2_12
Lecture Notes in Business Information Processing
Keywords
Field
DocType
Cyber security,web applications,enterprise architecture
Countermeasure,Enterprise architecture,Software engineering,Computer science,Cross-site scripting,Web application,Abstraction layer,SQL injection,Metamodeling,Information and Computer Science
Conference
Volume
ISSN
Citations 
131
1865-1348
4
PageRank 
References 
Authors
0.42
22
2
Name
Order
Citations
PageRank
Hannes Holm119114.59
Mathias Ekstedt263449.70