{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,8,19]],"date-time":"2026-08-19T12:37:56Z","timestamp":1787143076227,"version":"3.56.0"},"publisher-location":"Berlin, Heidelberg","reference-count":30,"publisher":"Springer Berlin Heidelberg","isbn-type":[{"value":"9783642232992","type":"print"},{"value":"9783642233005","type":"electronic"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2011]]},"DOI":"10.1007\/978-3-642-23300-5_23","type":"book-chapter","created":{"date-parts":[[2011,8,17]],"date-time":"2011-08-17T08:34:23Z","timestamp":1313570063000},"page":"295-308","source":"Crossref","is-referenced-by-count":17,"title":["Learning Web Application Firewall - Benefits and Caveats"],"prefix":"10.1007","author":[{"given":"Dariusz","family":"Pa\u0142ka","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Marek","family":"Zachara","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","reference":[{"key":"23_CR1","unstructured":"CWE\/SANS Top 25 Most Dangerous Software Errors (2010), \n                      \n                        http:\/\/cwe.mitre.org\/top25\/archive\/2010\/2010_cwe_sans_top25.pdf"},{"issue":"3","key":"23_CR2","doi-asserted-by":"publisher","first-page":"237","DOI":"10.1145\/356914.356918","volume":"15","author":"D. Angluin","year":"1983","unstructured":"Angluin, D., Smith, C.: Inductive Inference: Theory and Methods. ACM Computing Surveys\u00a015(3), 237\u2013269 (1983)","journal-title":"ACM Computing Surveys"},{"key":"23_CR3","doi-asserted-by":"publisher","first-page":"603","DOI":"10.1162\/153244304773936063","volume":"4","author":"O. Cicchello","year":"2003","unstructured":"Cicchello, O., Kremer, S.C.: Inducing grammars from sparse data sets: a survey of algorithms and results. Journal of Machine Learning and Research\u00a04, 603\u2013632 (2003)","journal-title":"Journal of Machine Learning and Research"},{"key":"23_CR4","unstructured":"CSI\/FBI Computer Crime and Security Survey (2006), \n                      \n                        http:\/\/i.cmpnet.com\/gocsi\/db_area\/pdfs\/fbi\/FBI2006.pdf"},{"key":"23_CR5","volume-title":"Pattern Classification","author":"R.O. Duda","year":"2001","unstructured":"Duda, R.O., Hart, P.E., Stork, D.G.: Pattern Classification. Wiley, New York (2001) ISBN: 978-0-471-05669-0"},{"key":"23_CR6","series-title":"Lecture Notes in Artificial Intelligence","doi-asserted-by":"publisher","first-page":"297","DOI":"10.1007\/11564089_24","volume-title":"Algorithmic Learning Theory","author":"H. Fernau","year":"2005","unstructured":"Fernau, H.: Algorithms for Learning Regular Expressions. In: Jain, S., Simon, H.U., Tomita, E. (eds.) ALT 2005. LNCS (LNAI), vol.\u00a03734, pp. 297\u2013311. Springer, Heidelberg (2005)"},{"key":"23_CR7","volume-title":"Hunting Security Bugs","author":"T. Gallagher","year":"2006","unstructured":"Gallagher, T., Jeffries, B., Landauer, L.: Hunting Security Bugs. Microsoft Press, Redmond (2006) ISBN: 978-0-7356-2187-9"},{"issue":"3","key":"23_CR8","doi-asserted-by":"publisher","first-page":"302","DOI":"10.1016\/S0019-9958(78)90562-4","volume":"37","author":"E. Gold","year":"1978","unstructured":"Gold, E.: Complexity of automaton identification from given data. Information and Control\u00a037(3), 302\u2013320 (1978)","journal-title":"Information and Control"},{"key":"23_CR9","volume-title":"Web Security Testing Cookbook","author":"P. Hope","year":"2008","unstructured":"Hope, P., Walther, B.: Web Security Testing Cookbook. O\u2019Reilly Media, Sebastopol (2008) ISBN: 978-0-596-51483-9"},{"key":"23_CR10","unstructured":"Imperva Data Security Blog: Major websites (gov,mil,edu) are Hacked and Up for Sale, \n                      \n                        http:\/\/blog.imperva.com\/2011\/01\/major-websites-govmiledu-are-hacked-and-up-for-sale.html"},{"key":"23_CR11","doi-asserted-by":"publisher","first-page":"1239","DOI":"10.1016\/j.comnet.2006.09.016","volume":"51","author":"K. Ingham","year":"2007","unstructured":"Ingham, K., et al.: Learning DFA representations of HTTP for protecting web applications. Computer Networks\u00a051, 1239\u20131255 (2007)","journal-title":"Computer Networks"},{"key":"23_CR12","unstructured":"ISO\/IEC standard 7498-1:1994, \n                      \n                        http:\/\/standards.iso.org\/ittf\/PubliclyAvailableStandards\/s020269_ISO_IEC_7498-1s_1994E.zip"},{"key":"23_CR13","doi-asserted-by":"publisher","first-page":"251","DOI":"10.1145\/948109.948144","volume-title":"Proceedings of the 10th ACM Conference on Computer and Communications Security","author":"C. Kruegel","year":"2003","unstructured":"Kruegel, C., Vigna, G.: Anomaly detection of web-based attacks. In: Proceedings of the 10th ACM Conference on Computer and Communications Security, pp. 251\u2013261. ACM Press, New York (2003)"},{"issue":"5","key":"23_CR14","doi-asserted-by":"publisher","first-page":"717","DOI":"10.1016\/j.comnet.2005.01.009","volume":"48","author":"C. Kruegel","year":"2005","unstructured":"Kruegel, C., Vigna, G., Robertson, W.: A multi-model approach to the detection of web-based attacks. Computer Networks\u00a048(5), 717\u2013738 (2005)","journal-title":"Computer Networks"},{"key":"23_CR15","doi-asserted-by":"publisher","first-page":"376","DOI":"10.1145\/775047.775102","volume-title":"Proceedings of the Eighth ACM SIGKDD International Conference on Knowledge Discovery and Data Mining","author":"M.V. Mahoney","year":"2002","unstructured":"Mahoney, M.V., Chan, P.K.: Learning nonstationary models of normal network traffic for detecting novel attacks. In: Proceedings of the Eighth ACM SIGKDD International Conference on Knowledge Discovery and Data Mining, pp. 376\u2013385. ACM Press, New York (2002)"},{"key":"23_CR16","doi-asserted-by":"publisher","first-page":"346","DOI":"10.1145\/952532.952601","volume-title":"Proceedings of the 2003 ACM Symposium on Applied Computing","author":"M.V. Mahoney","year":"2003","unstructured":"Mahoney, M.V.: Network traffic anomaly detection based on packet bytes. In: Proceedings of the 2003 ACM Symposium on Applied Computing, pp. 346\u2013350. ACM Press, New York (2003)"},{"key":"23_CR17","unstructured":"Microsoft Security Intelligence Report, Key Findings, \n                      \n                        http:\/\/www.microsoft.com\/security\/sir\/keyfindings\/default.aspx"},{"key":"23_CR18","unstructured":"Netcraft, Web Server Survey (April 2011), \n                      \n                        http:\/\/news.netcraft.com\/archives\/2011\/04\/06\/april-2011-web-server-survey.html"},{"key":"23_CR19","first-page":"81","volume-title":"Proceedings of the Fifth String Processing and Information Retrieval Symposium","author":"A.L. Oliveria","year":"1998","unstructured":"Oliveria, A.L., Silva, J.: Efficient search techniques for the inference of minimum sized finite automata. In: Proceedings of the Fifth String Processing and Information Retrieval Symposium, pp. 81\u201389. IEEE Computer Press, Los Alamitos (1998)"},{"key":"23_CR20","unstructured":"Paxson, V.: Bro: A System for Detecting Network Intruders in Real-Time. In: Proceedings of 7\u2019th USENIX Security Symposium Lawrence Berkeley National Laboratory, San Antonio TX, January 26-29 (1998)"},{"key":"23_CR21","volume-title":"Intrusion Detection Systems","year":"2008","unstructured":"Pietro, R., Mancini, L. (eds.): Intrusion Detection Systems. Springer, Heidelberg (2008) ISBN: 978-0-387-77265-3"},{"key":"23_CR22","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"crossref","first-page":"18","DOI":"10.1007\/3-540-51734-0_50","volume-title":"Analogical and Inductive Inference","author":"L. Pitt","year":"1989","unstructured":"Pitt, L.: Inductive Inference, DFAs, and Computational Complexity. In: Jantke, K.P. (ed.) AII 1989. LNCS, vol.\u00a0397, pp. 18\u201344. Springer, Heidelberg (1989)"},{"issue":"2","key":"23_CR23","doi-asserted-by":"publisher","first-page":"257","DOI":"10.1109\/5.18626","volume":"77","author":"L. Rabiner","year":"1989","unstructured":"Rabiner, L.: A Tutorial on Hidden Markov Models and Selected Applications in Speech Recognition. Proc. IEEE\u00a077(2), 257\u2013286 (1989)","journal-title":"Proc. IEEE"},{"key":"23_CR24","unstructured":"Roesch, M.: Snort Lightweight Intrusion Detection for Networks. In: Proceedings of 13th Systems Administration Conference, LISA 1999, pp. 229\u2013238 (1999)"},{"issue":"1","key":"23_CR25","doi-asserted-by":"publisher","first-page":"15","DOI":"10.1016\/S0304-3975(97)00014-5","volume":"185","author":"Y. Sakakibara","year":"1997","unstructured":"Sakakibara, Y.: Recent Advances of Grammatical Inference. Theor. Comput. Sci.\u00a0185(1), 15\u201345 (1997)","journal-title":"Theor. Comput. Sci."},{"key":"23_CR26","unstructured":"Stolcke, A., Omohundro, S.: Best-first model merging for Hidden Markov Model induction, Technical Report TR-93-003. International Computer Science Institute, Berkeley, Ca (1993)"},{"key":"23_CR27","unstructured":"The State of Web Application Security (2011), \n                      \n                        http:\/\/www.barracudanetworks.com\/ns\/downloads\/White_Papers\/Barracuda_Web_App_Firewall_WP_Cenzic_Exec_Summary.pdf"},{"key":"23_CR28","unstructured":"Web Application Firewall, \n                      \n                        https:\/\/www.owasp.org\/index.php\/Web_Application_Firewall"},{"key":"23_CR29","unstructured":"Web Application Firewall Evaluation Criteria, \n                      \n                        http:\/\/projects.webappsec.org\/w\/page\/13246985\/Web-Application-Firewall-Evaluation-Criteria"},{"key":"23_CR30","unstructured":"Web Application Security Statistics (2008), \n                      \n                        http:\/\/projects.webappsec.org\/w\/page\/13246989\/Web-Application-Security-Statistics"}],"container-title":["Lecture Notes in Computer Science","Availability, Reliability and Security for Business, Enterprise and Health Information Systems"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-642-23300-5_23.pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2021,5,3]],"date-time":"2021-05-03T07:44:44Z","timestamp":1620027884000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-642-23300-5_23"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2011]]},"ISBN":["9783642232992","9783642233005"],"references-count":30,"URL":"https:\/\/doi.org\/10.1007\/978-3-642-23300-5_23","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2011]]}}}