EXPERIMENTAL STUDIES OF THE FEATURES OF USING WAF TO PROTECT INTERNAL SERVICES IN THE ZERO TRUST STRUCTURE
Lakhno V. Blozva A. Kasatkin D. Chubaievskyi V. Shestak Y. Tyshchenko D. Brzhanov R.
15 February 2022Little Lion Scientific
Journal of Theoretical and Applied Information Technology
2022#100Issue 3705 - 721 pp.
With the growth of web applications popularity, the need to protect them from hacking and unauthorized access is growing even faster. More than 75% of hacker attacks are aimed at vulnerabilities in web applications and corporate websites. The consequences of such malicious actions are quite obvious and not very pleasant for companies (especially their customers): the loss of personal data, including payment information, the ability to access trade secrets and confidential documents via enterprise networks. Traditional firewall methods do not prevent attacks on web services. Firewalls target threats at the network and transport layers, while web applications operate at the application layer. A Web Application Firewall (WAF is a type of firewall that is used to protect web applications. While a forward proxy server protects the client computers identity using an intermediary, WAF deploys in front of web applications (in reverse proxy mode) and analyzes bi-directional HTTP/HTTPS traffic to entice malicious traffic and block it. WAFs are not the ultimate security solution, rather they are intended to be used in conjunction with other network perimeter security solutions such as next-generation firewalls (NGFW) and intrusion prevention systems (IPS).
Firewalls , OWASP , Security , WAF
Text of the article Перейти на текст статьи
National University of Life and Environmental Sciences of Ukraine, Kyiv, Ukraine
Kyiv National University of Trade and Economics, Department of Software Engineering and Cybersecurity, Kyiv, Ukraine
Caspian State University of Technology and Engineering named after Sh. Yesenov, Aktau, Kazakhstan
National University of Life and Environmental Sciences of Ukraine
Kyiv National University of Trade and Economics
Caspian State University of Technology and Engineering named after Sh. Yesenov
10 лет помогаем публиковать статьи Международный издатель
Книга Публикация научной статьи Волощук 2026 Book Publication of a scientific article 2026