Article(id=1254010453944894359, tenantId=1146029695717560320, journalId=1251234646239789153, issueId=1254010452460106357, articleNumber=null, orderNo=null, doi=10.12399/j.issn.2097-163x.2025.05.005, pmid=null, cstr=null, oa=null, hot=null, price=null, onlineType=0, articleFormat=0, articleType=null, articleTypeStr=null, receivedDate=1752163200000, receivedDateStr=2025-07-11, revisedDate=1755619200000, revisedDateStr=2025-08-20, acceptedDate=null, acceptedDateStr=null, onlineDate=1776908990607, onlineDateStr=2026-04-23, pubDate=null, pubDateStr=null, doiRegisterDate=null, doiRegisterDateStr=null, onlineIssueDate=1776908990607, onlineIssueDateStr=2026-04-23, onlineJustAcceptDate=null, onlineJustAcceptDateStr=null, onlineFirstDate=null, onlineFirstDateStr=null, sourceXml=null, magXml=null, createTime=1776908990607, creator=13041195026, updateTime=1776908990607, updator=13041195026, issue=Issue{id=1254010452460106357, tenantId=1146029695717560320, journalId=1251234646239789153, year='2025', volume='4', issue='5', pageStart='1', pageEnd='96', issueExtLink='null', onlineDate='null', pubDate='null', beforeIssueId=null, nextIssueId=null, price=null, status=1, issueComplete=1, articleOrder=1, issueType=1, specialIssue=null, createTime=1776908990253, creator=13041195026, updateTime=1777355431505, updator=13041195026, preIssue=null, nextIssue=null, ext={EN=IssueExt(id=1255882962894242489, tenantId=1146029695717560320, journalId=1251234646239789153, issueId=1254010452460106357, language=EN, specialIssueTitle=, coverIllustrator=null, specialIssueEditor=, specialIssueAbout=), CN=IssueExt(id=1255882962894242490, tenantId=1146029695717560320, journalId=1251234646239789153, issueId=1254010452460106357, language=CN, specialIssueTitle=, coverIllustrator=null, specialIssueEditor=, specialIssueAbout=)}, issueFiles=null}, startPage=66, endPage=76, ext={EN=ArticleExt(id=1254010454162998169, articleId=1254010453944894359, tenantId=1146029695717560320, journalId=1251234646239789153, language=EN, title=“Ourboros”:an automated WAF security testing framework based on symbol-enhanced networks and deep reinforcement learning, columnId=1254010453361881720, journalTitle=Information Countermeasure Technology, columnName=Research Articles, runingTitle=null, highlight=null, articleAbstract=
Web application firewall(WAF)is critical defensive mechanisms against persistent threats,yet its security assessment has long been challenging. Traditional manual testing methods are inefficient and resource-intensive,while existing reinforcement learning(RL)based methods suffer from two major limitations:first,attackers cannot perceive the opaque rule logic of WAF,leading to low efficiency in black-box testing; second,the Boolean feedback of WAF causes the problem of sparse/delayed rewards—sparse rewards tend to trap intelligent agents in blind exploration,and delayed rewards hinder the association between early actions and final outcomes,seriously impairing learning efficiency. To break through these bottlenecks,this study proposed“Ouroboros”—ablack-box WAF testing framework—for the first time.Its core lies in converting the extracted WAF rules into an interpretable recurrent neural network(RNN)to provide fine-grained confidence scores,and integrating these scores with outcome-level rewards to drive RL-based testing.Experiments show that this framework can achieve a maximum bypass success rate of 89.2% on feature-based WAF. This not only alleviates the sparse reward problem and provides an efficient black-box testing solution,but also offers important references for optimizing WAF rules.
, correspAuthors=null, authorNote=null, correspAuthorsNote=null, copyrightStatement=null, copyrightOwner=null, extLink=null, articleAbsUrl=null, sourceXml=null, magXml=null, pdfUrl=null, pdf=null, pdfFileSize=null, pdfExtLink=null, richHtmlUrl=null, mobilePdfUrl=null, reviewReport=null, pdfFirstPage=null, abstractGraph=null, abstractGraphContent=null, abstractVideo=null, citation=null, cebUrl=null, magXmlContent=null, mapNumber=null, authorCompany=null, fund=null, authors=null, authorsList=Pengcheng LU, Xiaofeng ZHONG, Jie CHEN, Wenbo XU, Yongjie WANG), CN=ArticleExt(id=1254010459556873155, articleId=1254010453944894359, tenantId=1146029695717560320, journalId=1251234646239789153, language=CN, title=“衔尾蛇”:基于符号增强网络与深度强化学习的自动化WAF安全测试框架, columnId=1254010453533848188, journalTitle=信息对抗技术, columnName=研究论文, runingTitle=null, highlight=null, articleAbstract=
Web应用防火墙(Web application firewall,WAF)是应对持续性威胁的关键防御机制,但其安全评估长期面临挑战。传统人工测试方法效率低下且资源耗费大,而现有基于强化学习(reinforcement learning,RL)的自动化方案存在两大局限:一是攻击者因无法感知WAF的不透明规则逻辑,导致黑盒测试效率低下;二是WAF的布尔值反馈引发稀疏/延迟奖励问题,稀疏奖励易使智能体陷入盲目探索,延迟奖励则阻碍早期操作与最终结果的关联,严重影响学习效率。为突破上述瓶颈,首次提出“衔尾蛇”——黑盒WAF测试框架,其核心在于将提取的WAF规则转化为可解释循环神经网络(recurrent neural network,RNN),以提供细粒度置信度评分,并融合该评分与最终结果级奖励来驱动强化学习测试。实验表明,该框架在基于特征的WAF上最高可实现89.2%的规避成功率,这不仅缓解稀疏奖励问题,提供了高效的黑盒测试方案,还为优化WAF规则提供了重要参考。
, correspAuthors=null, authorNote=null, correspAuthorsNote=
, copyrightStatement=null, copyrightOwner=null, extLink=null, articleAbsUrl=null, sourceXml=iNOuj0FOhaHsY3trzOzwRA==, magXml=lE+trvooWSIx8riIs3FpGA==, pdfUrl=null, pdf=FlatuL6BUXg/A9M1jSoOkA==, pdfFileSize=2772955, pdfExtLink=null, richHtmlUrl=null, mobilePdfUrl=null, reviewReport=null, pdfFirstPage=null, abstractGraph=loVUyHPkyFuu6k6ymLobBw==, abstractGraphContent=null, abstractVideo=null, citation=null, cebUrl=null, magXmlContent=qi+KJDco2NC2yOOaP/U8sw==, mapNumber=null, authorCompany=null, fund=null, authors=
, authorsList=陆鹏程, 钟晓峰, 陈杰, 许文博, 王永杰)}, authors=[Author(id=1254010461461087181, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, orderNo=0, firstName=null, middleName=null, lastName=null, nameCn=null, orcid=null, stid=null, country=null, authorPic=null, dead=0, email=lupc@nudt.edu.cn, emailSecond=null, emailThird=null, correspondingAuthor=0, authorType=1, ext={EN=AuthorExt(id=1254010461582722001, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, authorId=1254010461461087181, language=EN, stringName=Pengcheng LU, firstName=Pengcheng, middleName=null, lastName=LU, prefix=null, suffix=null, authorComment=null, nameInitials=null, affiliation=null, department=null, xref=
1, 2, address=
1College of Electronic Engineering, National University of Defense Technology, Hefei 230037, China
2Anhui Province Key Laboratory of Cyberspace Security Situation Awareness and Evaluation, Hefei 230037, China, bio=null, bioImg=null, bioContent=null, aboutCorrespAuthor=null), CN=AuthorExt(id=1254010461679190994, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, authorId=1254010461461087181, language=CN, stringName=陆鹏程, firstName=null, middleName=null, lastName=null, prefix=null, suffix=null, authorComment=null, nameInitials=null, affiliation=null, department=null, xref=
1, 2, address=
1国防科技大学电子对抗学院,安徽 合肥 230037
2网络空间安全态势感知与评估安徽省重点实验室,安徽 合肥 230037, bio={"img":"lgVZ5YbIYoZImxUJFKru2w==","content":"
陆鹏程 男,1996年生,硕士研究生,研究方向为人工智能赋能网络安全 E-mail:lupc@nudt.edu.cn
"}, bioImg=lgVZ5YbIYoZImxUJFKru2w==, bioContent=
陆鹏程 男,1996年生,硕士研究生,研究方向为人工智能赋能网络安全 E-mail:lupc@nudt.edu.cn
, aboutCorrespAuthor=null)}, companyList=[AuthorCompany(id=1254010459779171269, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, xref=1, ext=[AuthorCompanyExt(id=1254010459783365574, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, companyId=1254010459779171269, language=EN, country=null, province=null, city=null, postcode=null, companyName=null, departmentName=null, remark=
1College of Electronic Engineering, National University of Defense Technology, Hefei 230037, China), AuthorCompanyExt(id=1254010459791754183, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, companyId=1254010459779171269, language=CN, country=null, province=null, city=null, postcode=null, companyName=null, departmentName=null, remark=
1国防科技大学电子对抗学院,安徽 合肥 230037)]), AuthorCompany(id=1254010461335258056, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, xref=2, ext=[AuthorCompanyExt(id=1254010461343646665, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, companyId=1254010461335258056, language=EN, country=null, province=null, city=null, postcode=null, companyName=null, departmentName=null, remark=
2Anhui Province Key Laboratory of Cyberspace Security Situation Awareness and Evaluation, Hefei 230037, China), AuthorCompanyExt(id=1254010461352035274, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, companyId=1254010461335258056, language=CN, country=null, province=null, city=null, postcode=null, companyName=null, departmentName=null, remark=
2网络空间安全态势感知与评估安徽省重点实验室,安徽 合肥 230037)])]), Author(id=1254010461817603028, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, orderNo=1, firstName=null, middleName=null, lastName=null, nameCn=null, orcid=null, stid=null, country=null, authorPic=null, dead=0, email=zhongxiaofeng17@nudt.edu.cn, emailSecond=null, emailThird=null, correspondingAuthor=0, authorType=1, ext={EN=AuthorExt(id=1254010461926654935, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, authorId=1254010461817603028, language=EN, stringName=Xiaofeng ZHONG, firstName=Xiaofeng, middleName=null, lastName=ZHONG, prefix=null, suffix=null, authorComment=null, nameInitials=null, affiliation=null, department=null, xref=
1, 2, address=
1College of Electronic Engineering, National University of Defense Technology, Hefei 230037, China
2Anhui Province Key Laboratory of Cyberspace Security Situation Awareness and Evaluation, Hefei 230037, China, bio=null, bioImg=null, bioContent=null, aboutCorrespAuthor=null), CN=AuthorExt(id=1254010462002152408, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, authorId=1254010461817603028, language=CN, stringName=钟晓峰, firstName=null, middleName=null, lastName=null, prefix=null, suffix=null, authorComment=null, nameInitials=null, affiliation=null, department=null, xref=
1, 2, address=
1国防科技大学电子对抗学院,安徽 合肥 230037
2网络空间安全态势感知与评估安徽省重点实验室,安徽 合肥 230037, bio={"img":"5/C3XkpVQ947IYxeBr2sXA==","content":"
钟晓峰 男,1981年生,博士,高级工程师,研究方向为网络安全与人工智能 E-mail:zhongxiaofeng17@nudt.edu.cn
"}, bioImg=5/C3XkpVQ947IYxeBr2sXA==, bioContent=
钟晓峰 男,1981年生,博士,高级工程师,研究方向为网络安全与人工智能 E-mail:zhongxiaofeng17@nudt.edu.cn
, aboutCorrespAuthor=null)}, companyList=[AuthorCompany(id=1254010459779171269, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, xref=1, ext=[AuthorCompanyExt(id=1254010459783365574, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, companyId=1254010459779171269, language=EN, country=null, province=null, city=null, postcode=null, companyName=null, departmentName=null, remark=
1College of Electronic Engineering, National University of Defense Technology, Hefei 230037, China), AuthorCompanyExt(id=1254010459791754183, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, companyId=1254010459779171269, language=CN, country=null, province=null, city=null, postcode=null, companyName=null, departmentName=null, remark=
1国防科技大学电子对抗学院,安徽 合肥 230037)]), AuthorCompany(id=1254010461335258056, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, xref=2, ext=[AuthorCompanyExt(id=1254010461343646665, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, companyId=1254010461335258056, language=EN, country=null, province=null, city=null, postcode=null, companyName=null, departmentName=null, remark=
2Anhui Province Key Laboratory of Cyberspace Security Situation Awareness and Evaluation, Hefei 230037, China), AuthorCompanyExt(id=1254010461352035274, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, companyId=1254010461335258056, language=CN, country=null, province=null, city=null, postcode=null, companyName=null, departmentName=null, remark=
2网络空间安全态势感知与评估安徽省重点实验室,安徽 合肥 230037)])]), Author(id=1254010462107010010, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, orderNo=2, firstName=null, middleName=null, lastName=null, nameCn=null, orcid=null, stid=null, country=null, authorPic=null, dead=0, email=jchen202209@163.com, emailSecond=null, emailThird=null, correspondingAuthor=0, authorType=1, ext={EN=AuthorExt(id=1254010462224450525, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, authorId=1254010462107010010, language=EN, stringName=Jie CHEN, firstName=Jie, middleName=null, lastName=CHEN, prefix=null, suffix=null, authorComment=null, nameInitials=null, affiliation=null, department=null, xref=
1, 2, address=
1College of Electronic Engineering, National University of Defense Technology, Hefei 230037, China
2Anhui Province Key Laboratory of Cyberspace Security Situation Awareness and Evaluation, Hefei 230037, China, bio=null, bioImg=null, bioContent=null, aboutCorrespAuthor=null), CN=AuthorExt(id=1254010462304142302, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, authorId=1254010462107010010, language=CN, stringName=陈杰, firstName=null, middleName=null, lastName=null, prefix=null, suffix=null, authorComment=null, nameInitials=null, affiliation=null, department=null, xref=
1, 2, address=
1国防科技大学电子对抗学院,安徽 合肥 230037
2网络空间安全态势感知与评估安徽省重点实验室,安徽 合肥 230037, bio={"img":"e1xekI2UVssBOoVuhfQGtA==","content":"
陈杰 男,1992年生,博士,研究方向为多智能体任务分配、演化博弈论以及复杂网络系统的博弈优化 E-mail:jchen202209@163.com
"}, bioImg=e1xekI2UVssBOoVuhfQGtA==, bioContent=
陈杰 男,1992年生,博士,研究方向为多智能体任务分配、演化博弈论以及复杂网络系统的博弈优化 E-mail:jchen202209@163.com
, aboutCorrespAuthor=null)}, companyList=[AuthorCompany(id=1254010459779171269, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, xref=1, ext=[AuthorCompanyExt(id=1254010459783365574, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, companyId=1254010459779171269, language=EN, country=null, province=null, city=null, postcode=null, companyName=null, departmentName=null, remark=
1College of Electronic Engineering, National University of Defense Technology, Hefei 230037, China), AuthorCompanyExt(id=1254010459791754183, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, companyId=1254010459779171269, language=CN, country=null, province=null, city=null, postcode=null, companyName=null, departmentName=null, remark=
1国防科技大学电子对抗学院,安徽 合肥 230037)]), AuthorCompany(id=1254010461335258056, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, xref=2, ext=[AuthorCompanyExt(id=1254010461343646665, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, companyId=1254010461335258056, language=EN, country=null, province=null, city=null, postcode=null, companyName=null, departmentName=null, remark=
2Anhui Province Key Laboratory of Cyberspace Security Situation Awareness and Evaluation, Hefei 230037, China), AuthorCompanyExt(id=1254010461352035274, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, companyId=1254010461335258056, language=CN, country=null, province=null, city=null, postcode=null, companyName=null, departmentName=null, remark=
2网络空间安全态势感知与评估安徽省重点实验室,安徽 合肥 230037)])]), Author(id=1254010462383834080, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, orderNo=3, firstName=null, middleName=null, lastName=null, nameCn=null, orcid=null, stid=null, country=null, authorPic=null, dead=0, email=xuwenbo19@nudt.edu.cn, emailSecond=null, emailThird=null, correspondingAuthor=0, authorType=1, ext={EN=AuthorExt(id=1254010462480303075, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, authorId=1254010462383834080, language=EN, stringName=Wenbo XU, firstName=Wenbo, middleName=null, lastName=XU, prefix=null, suffix=null, authorComment=null, nameInitials=null, affiliation=null, department=null, xref=
1, 2, address=
1College of Electronic Engineering, National University of Defense Technology, Hefei 230037, China
2Anhui Province Key Laboratory of Cyberspace Security Situation Awareness and Evaluation, Hefei 230037, China, bio=null, bioImg=null, bioContent=null, aboutCorrespAuthor=null), CN=AuthorExt(id=1254010462555800548, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, authorId=1254010462383834080, language=CN, stringName=许文博, firstName=null, middleName=null, lastName=null, prefix=null, suffix=null, authorComment=null, nameInitials=null, affiliation=null, department=null, xref=
1, 2, address=
1国防科技大学电子对抗学院,安徽 合肥 230037
2网络空间安全态势感知与评估安徽省重点实验室,安徽 合肥 230037, bio={"img":"4C9t34PBatmo9uLNmHAPig==","content":"
许文博 男,2000年生,硕士研究生,研究方向为智能渗透测试 E-mail:xuwenbo19@nudt.edu.cn
"}, bioImg=4C9t34PBatmo9uLNmHAPig==, bioContent=
许文博 男,2000年生,硕士研究生,研究方向为智能渗透测试 E-mail:xuwenbo19@nudt.edu.cn
, aboutCorrespAuthor=null)}, companyList=[AuthorCompany(id=1254010459779171269, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, xref=1, ext=[AuthorCompanyExt(id=1254010459783365574, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, companyId=1254010459779171269, language=EN, country=null, province=null, city=null, postcode=null, companyName=null, departmentName=null, remark=
1College of Electronic Engineering, National University of Defense Technology, Hefei 230037, China), AuthorCompanyExt(id=1254010459791754183, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, companyId=1254010459779171269, language=CN, country=null, province=null, city=null, postcode=null, companyName=null, departmentName=null, remark=
1国防科技大学电子对抗学院,安徽 合肥 230037)]), AuthorCompany(id=1254010461335258056, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, xref=2, ext=[AuthorCompanyExt(id=1254010461343646665, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, companyId=1254010461335258056, language=EN, country=null, province=null, city=null, postcode=null, companyName=null, departmentName=null, remark=
2Anhui Province Key Laboratory of Cyberspace Security Situation Awareness and Evaluation, Hefei 230037, China), AuthorCompanyExt(id=1254010461352035274, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, companyId=1254010461335258056, language=CN, country=null, province=null, city=null, postcode=null, companyName=null, departmentName=null, remark=
2网络空间安全态势感知与评估安徽省重点实验室,安徽 合肥 230037)])]), Author(id=1254010462660658150, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, orderNo=4, firstName=null, middleName=null, lastName=null, nameCn=null, orcid=null, stid=null, country=null, authorPic=null, dead=0, email=wangyongjie17@nudt.edu.cn, emailSecond=null, emailThird=null, correspondingAuthor=0, authorType=1, ext={EN=AuthorExt(id=1254010462782292969, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, authorId=1254010462660658150, language=EN, stringName=Yongjie WANG, firstName=Yongjie, middleName=null, lastName=WANG, prefix=null, suffix=null, authorComment=null, nameInitials=null, affiliation=null, department=null, xref=
1, 2, address=
1College of Electronic Engineering, National University of Defense Technology, Hefei 230037, China
2Anhui Province Key Laboratory of Cyberspace Security Situation Awareness and Evaluation, Hefei 230037, China, bio=null, bioImg=null, bioContent=null, aboutCorrespAuthor=null), CN=AuthorExt(id=1254010462891344874, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, authorId=1254010462660658150, language=CN, stringName=王永杰, firstName=null, middleName=null, lastName=null, prefix=null, suffix=null, authorComment=null, nameInitials=null, affiliation=null, department=null, xref=
1, 2, address=
1国防科技大学电子对抗学院,安徽 合肥 230037
2网络空间安全态势感知与评估安徽省重点实验室,安徽 合肥 230037, bio={"img":"oN2TpqqSFU67Gwrqr3H6aQ==","content":"
王永杰 男,1971年生,博士,教授,研究方向为网络空间安全、智能渗透测试与自动化移动目标防御 E-mail:wangyongjie17@nudt.edu.cn
"}, bioImg=oN2TpqqSFU67Gwrqr3H6aQ==, bioContent=
王永杰 男,1971年生,博士,教授,研究方向为网络空间安全、智能渗透测试与自动化移动目标防御 E-mail:wangyongjie17@nudt.edu.cn
, aboutCorrespAuthor=null)}, companyList=[AuthorCompany(id=1254010459779171269, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, xref=1, ext=[AuthorCompanyExt(id=1254010459783365574, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, companyId=1254010459779171269, language=EN, country=null, province=null, city=null, postcode=null, companyName=null, departmentName=null, remark=
1College of Electronic Engineering, National University of Defense Technology, Hefei 230037, China), AuthorCompanyExt(id=1254010459791754183, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, companyId=1254010459779171269, language=CN, country=null, province=null, city=null, postcode=null, companyName=null, departmentName=null, remark=
1国防科技大学电子对抗学院,安徽 合肥 230037)]), AuthorCompany(id=1254010461335258056, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, xref=2, ext=[AuthorCompanyExt(id=1254010461343646665, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, companyId=1254010461335258056, language=EN, country=null, province=null, city=null, postcode=null, companyName=null, departmentName=null, remark=
2Anhui Province Key Laboratory of Cyberspace Security Situation Awareness and Evaluation, Hefei 230037, China), AuthorCompanyExt(id=1254010461352035274, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, companyId=1254010461335258056, language=CN, country=null, province=null, city=null, postcode=null, companyName=null, departmentName=null, remark=
2网络空间安全态势感知与评估安徽省重点实验室,安徽 合肥 230037)])])], keywords=[Keyword(id=1254010463033951211, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, language=EN, orderNo=1, keyword=deep reinforcement learning), Keyword(id=1254010463117837292, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, language=EN, orderNo=2, keyword=regular expression), Keyword(id=1254010463201723373, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, language=EN, orderNo=3, keyword=SQL injection), Keyword(id=1254010463289803758, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, language=EN, orderNo=4, keyword=WAF security testing), Keyword(id=1254010463411438575, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, language=CN, orderNo=1, keyword=深度强化学习), Keyword(id=1254010463491130352, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, language=CN, orderNo=2, keyword=正则表达式), Keyword(id=1254010463600182257, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, language=CN, orderNo=3, keyword=SQL注入), Keyword(id=1254010463671485426, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, language=CN, orderNo=4, keyword=WAF安全测试)], refs=[Reference(id=1254010467421192200, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, doi=null, pmid=null, pmcid=null, year=2015, volume=null, issue=null, pageStart=1, pageEnd=10, url=null, language=null, rfNumber=[1], rfOrder=0, authorNames=APPELT D, NGUYEN C D, BRIAND L, journalName=null, refType=null, unstructuredReference=
APPELT D,
NGUYEN C D,
BRIAND L. Behind an application firewall, are we safe from SQL injection attacks[C]//Proceedings of the 8th IEEE International Conference on Software Testing, Verification and Validation.[S.l.:s.n.],
2015: 1-10., articleTitle=Behind an application firewall, are we safe from SQL injection attacks, refAbstract=null), Reference(id=1254010467517661193, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, doi=null, pmid=null, pmcid=null, year=2021, volume=null, issue=null, pageStart=489, pageEnd=502, url=null, language=null, rfNumber=[2], rfOrder=1, authorNames=ZOU Y H, BAI J J, ZHOU J, journalName=null, refType=null, unstructuredReference=
ZOU Y H,
BAI J J,
ZHOU J,
et al. TCP-Fuzz:detecting memory and semantic bugs in TCP stacks with fuzzing[C]//Proceedings of 2021 USENIX Annual Technical Conference.[S.l.]: USENIX Association,
2021:489-502., articleTitle=TCP-Fuzz:detecting memory and semantic bugs in TCP stacks with fuzzing, refAbstract=null), Reference(id=1254010467593158666, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, doi=null, pmid=null, pmcid=null, year=2024, volume=null, issue=null, pageStart=185, pageEnd=202, url=null, language=null, rfNumber=[3], rfOrder=2, authorNames=WANG Q, CHEN J J, JIANG Z Y, journalName=null, refType=null, unstructuredReference=
WANG Q,
CHEN J J,
JIANG Z Y,
et al. Break the wall from bottom: automated discovery of protocol-level evasion vulnerabilities in Web application firewalls[C]//Proceedings of 2024 IEEE Symposium on Security and Privacy.[S.l.]: IEEE,
2024: 185-202., articleTitle=Break the wall from bottom: automated discovery of protocol-level evasion vulnerabilities in Web application firewalls, refAbstract=null), Reference(id=1254010467706404875, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, doi=null, pmid=null, pmcid=null, year=2024, volume=null, issue=null, pageStart=1, pageEnd=18, url=null, language=null, rfNumber=[4], rfOrder=3, authorNames=ZHENG L K, LI X, WANG C H, journalName=null, refType=null, unstructuredReference=
ZHENG L K,
LI X,
WANG C H.ReqsMiner:automated discovery of CDN forwarding request inconsistencies and DoS attacks with grammar-based fuzzing[C]//Proceedings of the 31st Annual Network and Distributed System Security Symposium.[S.l.:s.n.],
2024:1-18., articleTitle=ReqsMiner:automated discovery of CDN forwarding request inconsistencies and DoS attacks with grammar-based fuzzing, refAbstract=null), Reference(id=1254010467790290956, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, doi=null, pmid=null, pmcid=null, year=2018, volume=67, issue=3, pageStart=733, pageEnd=757, url=null, language=null, rfNumber=[5], rfOrder=4, authorNames=APPELT D, NGUYEN C D, PANICHELLA A, journalName=IEEE Transactions on Reliability, refType=null, unstructuredReference=
APPELT D,
NGUYEN C D,
PANICHELLA A,
et al.A machine-learning-driven evolutionary approach for testing Web application firewalls[J].
IEEE Transactions on Reliability,
2018,
67(3): 733-757., articleTitle=A machine-learning-driven evolutionary approach for testing Web application firewalls, refAbstract=null), Reference(id=1254010467882565645, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, doi=null, pmid=null, pmcid=null, year=2024, volume=21, issue=4, pageStart=2852, pageEnd=2868, url=null, language=null, rfNumber=[6], rfOrder=5, authorNames=YAO Y, HE J J, LI T, journalName=IEEE Transactions on Dependable and Secure Computing, refType=null, unstructuredReference=
YAO Y,
HE J J,
LI T,
et al. An automatic XSS attack vector generation method based on the improved dueling DDQN algorithm[J].
IEEE Transactions on Dependable and Secure Computing,
2024,
21(4):2852-2868., articleTitle=An automatic XSS attack vector generation method based on the improved dueling DDQN algorithm, refAbstract=null), Reference(id=1254010467995811854, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, doi=null, pmid=null, pmcid=null, year=2024, volume=null, issue=null, pageStart=4653, pageEnd=4660, url=null, language=null, rfNumber=[7], rfOrder=6, authorNames=LEUNG D, TSAI O, HASHEMI K, journalName=null, refType=null, unstructuredReference=
LEUNG D,
TSAI O,
HASHEMI K,
et al. XploitSQL: advancing adversarial SQL injection attack generation with language models and reinforcement learning[C]//Proceedings of the 33rd ACM International Conference on Information and Knowledge Management.New York: ACM,
2024: 4653-4660., articleTitle=XploitSQL: advancing adversarial SQL injection attack generation with language models and reinforcement learning, refAbstract=null), Reference(id=1254010468079697935, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, doi=null, pmid=null, pmcid=null, year=2024, volume=21, issue=1, pageStart=153, pageEnd=167, url=null, language=null, rfNumber=[8], rfOrder=7, authorNames=YAN H N, LI X G, ZHANG W J, journalName=IEEE Transactions on Dependable and Secure Computing, refType=null, unstructuredReference=
YAN H N,
LI X G,
ZHANG W J,
et al. Automatic evasion of machine learning-based network intrusion detection systems[J].
IEEE Transactions on Dependable and Secure Computing,
2024,
21(1): 153-167., articleTitle=Automatic evasion of machine learning-based network intrusion detection systems, refAbstract=null), Reference(id=1254010468155195408, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, doi=null, pmid=null, pmcid=null, year=2023, volume=null, issue=null, pageStart=1, pageEnd=6, url=null, language=null, rfNumber=[9], rfOrder=8, authorNames=ISSAKHANI M, HUANG M F, TAYEBI M A, journalName=null, refType=null, unstructuredReference=
ISSAKHANI M,
HUANG M F,
TAYEBI M A,
et al. An evolutionary algorithm for adversarial SQL injection attack generation[C]//Proceedings of 2023 IEEE International Conference on Intelligence and Security Informatics.[S.l.]:IEEE,
2023: 1-6., articleTitle=An evolutionary algorithm for adversarial SQL injection attack generation, refAbstract=null), Reference(id=1254010468281024529, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, doi=null, pmid=null, pmcid=null, year=2022, volume=19, issue=5, pageStart=3371, pageEnd=3386, url=null, language=null, rfNumber=[10], rfOrder=9, authorNames=AMOUEI M, REZVANI M, FATEH M, journalName=IEEE Transactions on Dependable and Secure Computing, refType=null, unstructuredReference=
AMOUEI M,
REZVANI M,
FATEH M.RAT:reinforcement-learning-driven and adaptive testing for vulnerability discovery in Web application firewalls[J].
IEEE Transactions on Dependable and Secure Computing,
2022,
19(5): 3371-3386., articleTitle=RAT:reinforcement-learning-driven and adaptive testing for vulnerability discovery in Web application firewalls, refAbstract=null), Reference(id=1254010468385882130, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, doi=null, pmid=null, pmcid=null, year=2020, volume=11, issue=null, pageStart=100367, pageEnd=null, url=null, language=null, rfNumber=[11], rfOrder=10, authorNames=VALENZA A, DEMETRIO L, COSTA G, journalName=SoftwareX, refType=null, unstructuredReference=
VALENZA A,
DEMETRIO L,
COSTA G,
et al. WAF-A-MoLE: an adversarial tool for assessing ML-based WAFs[J].
SoftwareX,
2020,
11: 100367., articleTitle=WAF-A-MoLE: an adversarial tool for assessing ML-based WAFs, refAbstract=null), Reference(id=1254010468473962515, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, doi=null, pmid=null, pmcid=null, year=2024, volume=19, issue=null, pageStart=2623, pageEnd=2638, url=null, language=null, rfNumber=[12], rfOrder=11, authorNames=QU Z Q, LING X, WANG T, journalName=IEEE Transactions on Information Forensics and Security, refType=null, unstructuredReference=
QU Z Q,
LING X,
WANG T,
et al. AdvSQLi:generating adversarial SQL injections against real-world WAF-as-a-service[J].
IEEE Transactions on Information Forensics and Security,
2024,
19:2623-2638., articleTitle=AdvSQLi:generating adversarial SQL injections against real-world WAF-as-a-service, refAbstract=null), Reference(id=1254010468591403028, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, doi=null, pmid=null, pmcid=null, year=2021, volume=null, issue=null, pageStart=35, pageEnd=41, url=null, language=null, rfNumber=[13], rfOrder=12, authorNames=HEMMATI M, HADAVI M A, journalName=null, refType=null, unstructuredReference=
HEMMATI M,
HADAVI M A.Using deep reinforcement learning to evade Web application firewalls[C]//Proceedings of the 18th International ISC Conference on Information Security and Cryptology.[S.l.]:IEEE,
2021:35-41., articleTitle=Using deep reinforcement learning to evade Web application firewalls, refAbstract=null), Reference(id=1254010468851449877, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, doi=null, pmid=null, pmcid=null, year=2023, volume=23, issue=18, pageStart=8014, pageEnd=null, url=null, language=null, rfNumber=[14], rfOrder=13, authorNames=CHOWDHARY A, JHA K, ZHAO M, journalName=Sensors, refType=null, unstructuredReference=
CHOWDHARY A,
JHA K,
ZHAO M.Generative adversarial network(GAN)-based autonomous penetration testing for web applications[J].
Sensors,
2023,
23(18):8014., articleTitle=Generative adversarial network(GAN)-based autonomous penetration testing for web applications, refAbstract=null), Reference(id=1254010470332039190, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, doi=null, pmid=null, pmcid=null, year=2024, volume=21, issue=1, pageStart=309, pageEnd=324, url=null, language=null, rfNumber=[15], rfOrder=14, authorNames=LIANG H L, LI X Y, XIAO D, journalName=IEEE Transactions on Dependable and Secure Computing, refType=null, unstructuredReference=
LIANG H L,
LI X Y,
XIAO D,
et al. Generative pre-trained transformer-based reinforcement learning for testing Web application firewalls[J].
IEEE Transactions on Dependable and Secure Computing,
2024,
21(1):309-324., articleTitle=Generative pre-trained transformer-based reinforcement learning for testing Web application firewalls, refAbstract=null), Reference(id=1254010470411730967, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, doi=null, pmid=null, pmcid=null, year=1968, volume=11, issue=6, pageStart=419, pageEnd=422, url=null, language=null, rfNumber=[16], rfOrder=15, authorNames=THOMPSON K, journalName=Communications of the ACM, refType=null, unstructuredReference=
THOMPSON K.Programming techniques: regular expression search algorithm[J].
Communications of the ACM,
1968,
11(6): 419-422., articleTitle=Programming techniques: regular expression search algorithm, refAbstract=null), Reference(id=1254010470512394264, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, doi=null, pmid=null, pmcid=null, year=1959, volume=3, issue=2, pageStart=114, pageEnd=125, url=null, language=null, rfNumber=[17], rfOrder=16, authorNames=RABIN M O, SCOTT D, journalName=IBM Journal of Research and Development, refType=null, unstructuredReference=
RABIN M O,
SCOTT D.Finite automata and their decision problems[J].
IBM Journal of Research and Development,
1959,
3(2): 114-125., articleTitle=Finite automata and their decision problems, refAbstract=null), Reference(id=1254010470600474649, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, doi=null, pmid=null, pmcid=null, year=1973, volume=2, issue=2, pageStart=97, pageEnd=109, url=null, language=null, rfNumber=[18], rfOrder=17, authorNames=GRIES D, journalName=Acta Informatica, refType=null, unstructuredReference=
GRIES D. Describing an algorithm by Hopcroft[J].
Acta Informatica,
1973,
2(2): 97-109., articleTitle=Describing an algorithm by Hopcroft, refAbstract=null), Reference(id=1254010470667583514, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, doi=null, pmid=null, pmcid=null, year=2002, volume=87, issue=9, pageStart=1623, pageEnd=1640, url=null, language=null, rfNumber=[19], rfOrder=18, authorNames=GILES C L, OMLIN C W, THORNBER K K, journalName=Proceedings of the IEEE, refType=null, unstructuredReference=
GILES C L,
OMLIN C W,
THORNBER K K. Equivalence in knowledge representation: automata, recurrent neural networks, and dynamical fuzzy systems[J].
Proceedings of the IEEE,
2002,
87(9): 1623-1640., articleTitle=Equivalence in knowledge representation: automata, recurrent neural networks, and dynamical fuzzy systems, refAbstract=null), Reference(id=1254010470789218331, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, doi=null, pmid=null, pmcid=null, year=2018, volume=null, issue=null, pageStart=81, pageEnd=103, url=null, language=null, rfNumber=[20], rfOrder=19, authorNames=AYACHE S, EYRAUD R, GOUDIAN N, journalName=null, refType=null, unstructuredReference=
AYACHE S,
EYRAUD R,
GOUDIAN N. Explaining black boxes on sequential data using weighted automata[C]//Proceedings of the 14th International Conference on Grammatical Inference.[S.l.]:PMLR,
2018: 81-103., articleTitle=Explaining black boxes on sequential data using weighted automata, refAbstract=null), Reference(id=1254010470898270236, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, doi=null, pmid=null, pmcid=null, year=2020, volume=null, issue=null, pageStart=3193, pageEnd=3207, url=null, language=null, rfNumber=[21], rfOrder=20, authorNames=JIANG C Y, ZHAO Y G, CHU S B, journalName=null, refType=null, unstructuredReference=
JIANG C Y,
ZHAO Y G,
CHU S B,
et al. Cold-start and interpretability: turning regular expressions into trainable recurrent neural networks[C]//Proceedings of 2020 Conference on Empirical Methods in Natural Langulage Procession.[S.l.]:ACL,
2020: 3193-3207., articleTitle=Cold-start and interpretability: turning regular expressions into trainable recurrent neural networks, refAbstract=null), Reference(id=1254010470986350621, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, doi=null, pmid=null, pmcid=null, year=1989, volume=2, issue=4, pageStart=303, pageEnd=314, url=null, language=null, rfNumber=[22], rfOrder=21, authorNames=CYBENKO G, journalName=Mathematics of Control, Signals and Systems, refType=null, unstructuredReference=
CYBENKO G.Approximation by superpositions of a sigmoidal function[J].
Mathematics of Control, Signals and Systems,
1989,
2(4): 303-314., articleTitle=Approximation by superpositions of a sigmoidal function, refAbstract=null)], funds=null, companyList=[AuthorCompany(id=1254010459779171269, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, xref=1, ext=[AuthorCompanyExt(id=1254010459783365574, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, companyId=1254010459779171269, language=EN, country=null, province=null, city=null, postcode=null, companyName=null, departmentName=null, remark=
1College of Electronic Engineering, National University of Defense Technology, Hefei 230037, China), AuthorCompanyExt(id=1254010459791754183, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, companyId=1254010459779171269, language=CN, country=null, province=null, city=null, postcode=null, companyName=null, departmentName=null, remark=
1国防科技大学电子对抗学院,安徽 合肥 230037)]), AuthorCompany(id=1254010461335258056, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, xref=2, ext=[AuthorCompanyExt(id=1254010461343646665, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, companyId=1254010461335258056, language=EN, country=null, province=null, city=null, postcode=null, companyName=null, departmentName=null, remark=
2Anhui Province Key Laboratory of Cyberspace Security Situation Awareness and Evaluation, Hefei 230037, China), AuthorCompanyExt(id=1254010461352035274, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, companyId=1254010461335258056, language=CN, country=null, province=null, city=null, postcode=null, companyName=null, departmentName=null, remark=
2网络空间安全态势感知与评估安徽省重点实验室,安徽 合肥 230037)])], figs=[ArticleFig(id=1254010463835063283, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, language=EN, label=Fig.1, caption=
The differences between payload-level evasion and protocol-level evasion, figureFileSmall=vsGDTndR3Gu5hZ4qaZLkqQ==, figureFileBig=loVUyHPkyFuu6k6ymLobBw==, tableContent=null), ArticleFig(id=1254010463910560756, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, language=CN, label=图1, caption=
载荷层规避与协议层规避的不同, figureFileSmall=vsGDTndR3Gu5hZ4qaZLkqQ==, figureFileBig=loVUyHPkyFuu6k6ymLobBw==, tableContent=null), ArticleFig(id=1254010464216744949, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, language=EN, label=Fig.2, caption=
The overall framework of Ourboros, figureFileSmall=m0lsjUBQgqE175mZQrqQEQ==, figureFileBig=VXgfkp9C3xk1KAfZOlBCuw==, tableContent=null), ArticleFig(id=1254010465818969078, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, language=CN, label=图2, caption=
“衔尾蛇”总体框架, figureFileSmall=m0lsjUBQgqE175mZQrqQEQ==, figureFileBig=VXgfkp9C3xk1KAfZOlBCuw==, tableContent=null), ArticleFig(id=1254010465915438071, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, language=EN, label=Fig.3, caption=
Genetic algorithm-based WAF rule extraction, figureFileSmall=it5fWnWCHdYoF5oDrv8RHQ==, figureFileBig=X8+2k7k4ny5cDhFeAta0wg==, tableContent=null), ArticleFig(id=1254010465999324152, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, language=CN, label=图3, caption=
基于遗传算法的WAF规则提取, figureFileSmall=it5fWnWCHdYoF5oDrv8RHQ==, figureFileBig=X8+2k7k4ny5cDhFeAta0wg==, tableContent=null), ArticleFig(id=1254010466095793145, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, language=EN, label=Fig.4, caption=
Derivation process of context-free grammar, figureFileSmall=CnfNH7yN4CjAE04KxaKOPw==, figureFileBig=topSKP1n9LnH/uSRDDCQ/A==, tableContent=null), ArticleFig(id=1254010466171290618, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, language=CN, label=图4, caption=
利用上下文无关文法生成替换项的推导过程, figureFileSmall=CnfNH7yN4CjAE04KxaKOPw==, figureFileBig=topSKP1n9LnH/uSRDDCQ/A==, tableContent=null), ArticleFig(id=1254010466238399483, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, language=EN, label=Fig.5, caption=
Regular expression generation example, figureFileSmall=eS/+XrdbSWGVSLufrLWvyQ==, figureFileBig=dJ+2oq8g+8K39wgBe7cjvg==, tableContent=null), ArticleFig(id=1254010466351645692, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, language=CN, label=图5, caption=
正则表达式生成示例, figureFileSmall=eS/+XrdbSWGVSLufrLWvyQ==, figureFileBig=dJ+2oq8g+8K39wgBe7cjvg==, tableContent=null), ArticleFig(id=1254010466448114685, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, language=EN, label=Fig.6, caption=
The AUC curve of FA2RNN, figureFileSmall=U4FksMQ18a78q1bkg68I6g==, figureFileBig=uaayPbm4V2jhMC3h4lMaDw==, tableContent=null), ArticleFig(id=1254010466532000766, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, language=CN, label=图6, caption=
FA2RNN的AUC曲线, figureFileSmall=U4FksMQ18a78q1bkg68I6g==, figureFileBig=uaayPbm4V2jhMC3h4lMaDw==, tableContent=null), ArticleFig(id=1254010466603303935, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, language=EN, label=Fig.7, caption=
The average reward of different algorithms in training, figureFileSmall=90uuoIsJ8hAP88nWIjYUNA==, figureFileBig=ylkypg7NKtbu4odfd6ocDQ==, tableContent=null), ArticleFig(id=1254010466666218496, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, language=CN, label=图7, caption=
不同算法在训练时的平均奖励, figureFileSmall=90uuoIsJ8hAP88nWIjYUNA==, figureFileBig=ylkypg7NKtbu4odfd6ocDQ==, tableContent=null), ArticleFig(id=1254010466733326336, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, language=EN, label=Tab.1, caption=
Correspondence table for a subset of actions
, figureFileSmall=null, figureFileBig=null, tableContent=
| 动作 | 示例 |
|---|
| Space_to_comments | adminor1=1→admin/**/or/**/1=1 |
| Random_case | adminor1=1→adminor1=1 |
| Logical_invariant | adminor1=1→admin or1=1 andTrue |
| Swap_keywords | adminor1=1→admin||1=1 |
| Swap_int_repr | adminor1=1→adminor0x1=1 |
| Comment_rewriting | adminor1=1→adminor1/*abc*/=1 |
| Change_tautologies | adminor1=1→adminor2<>3 |
), ArticleFig(id=1254010466804629505, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, language=CN, label=表1, caption=
部分动作的对应表
, figureFileSmall=null, figureFileBig=null, tableContent=
| 动作 | 示例 |
|---|
| Space_to_comments | adminor1=1→admin/**/or/**/1=1 |
| Random_case | adminor1=1→adminor1=1 |
| Logical_invariant | adminor1=1→admin or1=1 andTrue |
| Swap_keywords | adminor1=1→admin||1=1 |
| Swap_int_repr | adminor1=1→adminor0x1=1 |
| Comment_rewriting | adminor1=1→adminor1/*abc*/=1 |
| Change_tautologies | adminor1=1→adminor2<>3 |
), ArticleFig(id=1254010466863349762, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, language=EN, label=Tab.2, caption=
Regex and symbolic augmented network performance
, figureFileSmall=null, figureFileBig=null, tableContent=
| 方法 | F1值 | 召回率 | 精确率 | 准确率 |
|---|
| RE | 0.8419±0.0103 | 0.8385±0.0232 | 0.8427±0.0375 | 0.8487±0.0064 |
| FA2RNN | 0.8633±0.0091 | 0.9382±0.0364 | 0.8009±0.0221 | 0.8192±0.0117 |
), ArticleFig(id=1254010466947235843, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, language=CN, label=表2, caption=
正则表达式与符号增强网络的性能
, figureFileSmall=null, figureFileBig=null, tableContent=
| 方法 | F1值 | 召回率 | 精确率 | 准确率 |
|---|
| RE | 0.8419±0.0103 | 0.8385±0.0232 | 0.8427±0.0375 | 0.8487±0.0064 |
| FA2RNN | 0.8633±0.0091 | 0.9382±0.0364 | 0.8009±0.0221 | 0.8192±0.0117 |
), ArticleFig(id=1254010467026927620, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, language=EN, label=Tab.3, caption=
Attack results with budgets of 10 and 20
, figureFileSmall=null, figureFileBig=null, tableContent=
| Dataset | WAF | FNR | Budget=10 | Budget=20 |
|---|
| DQN | PPO | Random | DQN | PPO | Random |
|---|
| SIK | ModSecurity_L1 | 24.89 | 51.10 | 50.35 | 45.30 | 59.05 | 60.24 | 55.14 |
| ModSecurity_L2 | 0.05 | 0.72 | 0.69 | 0.60 | 1.38 | 1.41 | 1.31 |
| Ngx_Lua_Waf | 35.27 | 72.57 | 68.25 | 44.81 | 76.70 | 70.20 | 54.90 |
| Janusec | 51.01 | 88.21 | 73.72 | 70.68 | 89.20 | 87.99 | 80.00 |
| MDD | ModSecurity_L1 | 1.85 | 52.73 | 58.19 | 30.91 | 56.36 | 63.64 | 51.64 |
| ModSecurity_L2 | 0 | 0 | 0 | 0 | 0 | 0 | 0 |
| Ngx_Lua_Waf | 43.64 | 56.36 | 58.19 | 80.36 | 85.45 | 89.10 | 87.27 |
| Janusec | 49.09 | 85.45 | 87.27 | 72.73 | 87.27 | 88.73 | 83.64 |
), ArticleFig(id=1254010467131785221, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, language=CN, label=表3, caption=
攻击预算为10和20时的攻击结果
, figureFileSmall=null, figureFileBig=null, tableContent=
| Dataset | WAF | FNR | Budget=10 | Budget=20 |
|---|
| DQN | PPO | Random | DQN | PPO | Random |
|---|
| SIK | ModSecurity_L1 | 24.89 | 51.10 | 50.35 | 45.30 | 59.05 | 60.24 | 55.14 |
| ModSecurity_L2 | 0.05 | 0.72 | 0.69 | 0.60 | 1.38 | 1.41 | 1.31 |
| Ngx_Lua_Waf | 35.27 | 72.57 | 68.25 | 44.81 | 76.70 | 70.20 | 54.90 |
| Janusec | 51.01 | 88.21 | 73.72 | 70.68 | 89.20 | 87.99 | 80.00 |
| MDD | ModSecurity_L1 | 1.85 | 52.73 | 58.19 | 30.91 | 56.36 | 63.64 | 51.64 |
| ModSecurity_L2 | 0 | 0 | 0 | 0 | 0 | 0 | 0 |
| Ngx_Lua_Waf | 43.64 | 56.36 | 58.19 | 80.36 | 85.45 | 89.10 | 87.27 |
| Janusec | 49.09 | 85.45 | 87.27 | 72.73 | 87.27 | 88.73 | 83.64 |
), ArticleFig(id=1254010467207282694, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, language=EN, label=Tab.4, caption=
Experimental results of different algorithms
, figureFileSmall=null, figureFileBig=null, tableContent=
| Algorithm | ModSecurity-L1 | ModSecurity-L2 | Ngx-Lua-Waf | Janusec |
|---|
| DQN-sparse | 53.80 | 0.85 | 67.50 | 75.10 |
| DQN-rnd | 58.50 | 1.50 | 73.20 | 80.25 |
| DQN-Ourboros* | 59.05 | 1.38 | 76.70 | 89.20 |
| PPO-sparse | 54.36 | 1.00 | 70.50 | 82.05 |
| PPO-rnd | 58.84 | 1.20 | 74.25 | 85.57 |
| PPO-Ourboros* | 60.24 | 1.41 | 75.20 | 87.95 |
|---|
), ArticleFig(id=1254010467286974471, tenantId=1146029695717560320, journalId=1251234646239789153, articleId=1254010453944894359, language=CN, label=表4, caption=
不同算法的实验结果
, figureFileSmall=null, figureFileBig=null, tableContent=
| Algorithm | ModSecurity-L1 | ModSecurity-L2 | Ngx-Lua-Waf | Janusec |
|---|
| DQN-sparse | 53.80 | 0.85 | 67.50 | 75.10 |
| DQN-rnd | 58.50 | 1.50 | 73.20 | 80.25 |
| DQN-Ourboros* | 59.05 | 1.38 | 76.70 | 89.20 |
| PPO-sparse | 54.36 | 1.00 | 70.50 | 82.05 |
| PPO-rnd | 58.84 | 1.20 | 74.25 | 85.57 |
| PPO-Ourboros* | 60.24 | 1.41 | 75.20 | 87.95 |
|---|
)], attaches=null, journal=Journal(id=1251231495319236709, delFlag=0, nameCn=信息对抗技术, nameEn=Information Countermeasure Technology, nameHistory1=null, nameHistory2=null, issn=2097-163X, eissn=, cn=34-1340/E, coden=null, periodic=1, language=CN, oaType=1, ccby=null, superviseOffice=null, ownerOffice=null, pubOffice=null, editorOffice=null, officeType=null, aims=null, clcCode=null, officeProv=null, officeCity=null, officeAddr=null, officeZip=null, officeEmail=, officePhone=, editDirector=null, officeDirector=null, officeDirectorPhone=null, officeStaffNum=null, officeEmpNum=null, coverPicUrl=28NAsfRnEEIAv0GvsYImxg==, journalPrice=null, startedYear=null, abbrevIsoEn=Information Countermeasure Technology, journalRemark=null, publicationField=null, createdTime=1776246435243, updatedTime=1776397616785, createdBy=18614031015, updatedBy=13701087609, firstLetterCn=I, firstLetterEn=I, subjectCode=Engineering, subjectName=工程, subjectCodeEn=Engineering, subjectNameEn=null, picCn=28NAsfRnEEIAv0GvsYImxg==, picEn=W2zeGuQU+j8zRKRf0eBlGA==, jcr=null, cjcr=null, exts=[JournalExt(id=1251865596783182768, language=CN, name=信息对抗技术, nameHistory1=null, nameHistory2=null, managedBy=, sponsoredBy=, publishedBy=, editorOffice=, officeProv=null, officeCity=null, officeAddr=, officeZip=, editDirector=, officeDirector=null, officePhone=null, coverPicUrl=null, journalRemark=, submitArticleUrl=null, websiteUrl=, createdTime=1776397616811, updatedTime=1776397616811, createdBy=13701087609, updatedBy=13701087609, submissionGuidelinesUrl=, submissionAuthorUrl=http://xxdkjs.ijournals.cn/xxdk/author/login, submissionEditorUrl=http://xxdkjs.ijournals.cn/xxdk/editor/login, submissionReviewUrl=http://xxdkjs.ijournals.cn/xxdk/reviewer/login, submissionCeEditorUrl=, submissionAeEditorUrl=, option={"copyright":""}), JournalExt(id=1251865596854485937, language=EN, name=Information Countermeasure Technology, nameHistory1=null, nameHistory2=null, managedBy=, sponsoredBy=, publishedBy=, editorOffice=, officeProv=null, officeCity=null, officeAddr=, officeZip=, editDirector=, officeDirector=null, officePhone=null, coverPicUrl=null, journalRemark=, submitArticleUrl=null, websiteUrl=, createdTime=1776397616828, updatedTime=1776397616828, createdBy=13701087609, updatedBy=13701087609, submissionGuidelinesUrl=, submissionAuthorUrl=http://xxdkjs.ijournals.cn/xxdk/author/login, submissionEditorUrl=http://xxdkjs.ijournals.cn/xxdk/editor/login, submissionReviewUrl=http://xxdkjs.ijournals.cn/xxdk/reviewer/login, submissionCeEditorUrl=, submissionAeEditorUrl=, option={"copyright":""})], databaseList=null, tenantJournalId=1251234646239789153, websiteList=[Website(id=1251257283527786546, webName=null, webTitle=null, webDomain=null, webCopyrigh=null, webIpcNo=null, seoTitle=null, seoKeywords=null, seoDescription=null, tenantJournalId=null, journalId=1251234646239789153, journalNameCn=null, journalNameEn=null, grayFlag=null, tenantId=1146029695717560320, platformId=null, journalGroupId=null, journalGroupNameCn=null, journalGroupNameEn=null, type=1, domain=https://castjournals.cast.org.cn/joweb/xxdkjs/CN, language=CN, createTime=1776252583629, createBy=18614031015, updateTime=1776253877246, updateBy=18614031015, name=信息对抗技术-中文, tplId=1146099689490845704, title=信息对抗技术, delFlag=0, indexPage=/home, props=[WebsiteProps(id=1251262819858068136, tenantId=1146029695717560320, journalId=null, journalGroupId=null, siteId=1251257283527786546, code=articleTextType, value=kx, createTime=1776253903593, updateTime=1776253903593, creator=18614031015, updator=18614031015), WebsiteProps(id=1251262819841290917, tenantId=1146029695717560320, journalId=null, journalGroupId=null, siteId=1251257283527786546, code=banner, value=null, createTime=1776253903589, updateTime=1776253903589, creator=18614031015, updator=18614031015), WebsiteProps(id=1251262819879039659, tenantId=1146029695717560320, journalId=null, journalGroupId=null, siteId=1251257283527786546, code=grayFlag, value=0, createTime=1776253903598, updateTime=1776253903598, creator=18614031015, updator=18614031015), WebsiteProps(id=1251262819837096612, tenantId=1146029695717560320, journalId=null, journalGroupId=null, siteId=1251257283527786546, code=logo, value=https://castjournals.cast.org.cn/joweb/xxdkjs/CN/file/pic?fileId=ejr3qWSnlyLKPBFIFKSmqw==, createTime=1776253903588, updateTime=1776253903588, creator=18614031015, updator=18614031015), WebsiteProps(id=1251262819891622573, tenantId=1146029695717560320, journalId=null, journalGroupId=null, siteId=1251257283527786546, code=minRunFlag, value=0, createTime=1776253903601, updateTime=1776253903601, creator=18614031015, updator=18614031015), WebsiteProps(id=1251262819853873831, tenantId=1146029695717560320, journalId=null, journalGroupId=null, siteId=1251257283527786546, code=picServerUrl, value=https://castjournals.cast.org.cn/joweb/xxdkjs/CN/file/pic, createTime=1776253903592, updateTime=1776253903592, creator=18614031015, updator=18614031015), WebsiteProps(id=1251262819887428268, tenantId=1146029695717560320, journalId=null, journalGroupId=null, siteId=1251257283527786546, code=silenceFlag, value=0, createTime=1776253903600, updateTime=1776253903600, creator=18614031015, updator=18614031015), WebsiteProps(id=1251262819845485222, tenantId=1146029695717560320, journalId=null, journalGroupId=null, siteId=1251257283527786546, code=staticResourcePath, value=https://castjournals.cast.org.cn/joweb/cast_kjdb_cn_619/, createTime=1776253903590, updateTime=1776253903590, creator=18614031015, updator=18614031015), WebsiteProps(id=1251262819866456745, tenantId=1146029695717560320, journalId=null, journalGroupId=null, siteId=1251257283527786546, code=themeColor, value=null, createTime=1776253903595, updateTime=1776253903595, creator=18614031015, updator=18614031015), WebsiteProps(id=1251262819870651050, tenantId=1146029695717560320, journalId=null, journalGroupId=null, siteId=1251257283527786546, code=themeStyle, value=null, createTime=1776253903596, updateTime=1776253903596, creator=18614031015, updator=18614031015)]), Website(id=1251257283611672652, webName=null, webTitle=null, webDomain=null, webCopyrigh=null, webIpcNo=null, seoTitle=null, seoKeywords=null, seoDescription=null, tenantJournalId=null, journalId=1251234646239789153, journalNameCn=null, journalNameEn=null, grayFlag=null, tenantId=1146029695717560320, platformId=null, journalGroupId=null, journalGroupNameCn=null, journalGroupNameEn=null, type=1, domain=https://castjournals.cast.org.cn/joweb/xxdkjs/EN, language=EN, createTime=1776252583649, createBy=18614031015, updateTime=1776253872573, updateBy=18614031015, name=信息对抗技术-英文, tplId=1146101810881728533, title=Information Countermeasure Technology, delFlag=0, indexPage=/home, props=[WebsiteProps(id=1251262790762185057, tenantId=1146029695717560320, journalId=null, journalGroupId=null, siteId=1251257283611672652, code=articleTextType, value=kx, createTime=1776253896656, updateTime=1776253896656, creator=18614031015, updator=18614031015), WebsiteProps(id=1251262790737019230, tenantId=1146029695717560320, journalId=null, journalGroupId=null, siteId=1251257283611672652, code=banner, value=null, createTime=1776253896650, updateTime=1776253896650, creator=18614031015, updator=18614031015), WebsiteProps(id=1251262790778962276, tenantId=1146029695717560320, journalId=null, journalGroupId=null, siteId=1251257283611672652, code=grayFlag, value=0, createTime=1776253896660, updateTime=1776253896660, creator=18614031015, updator=18614031015), WebsiteProps(id=1251262790728630621, tenantId=1146029695717560320, journalId=null, journalGroupId=null, siteId=1251257283611672652, code=logo, value=https://castjournals.cast.org.cn/joweb/xxdkjs/EN/file/pic?fileId=ejr3qWSnlyLKPBFIFKSmqw==, createTime=1776253896648, updateTime=1776253896648, creator=18614031015, updator=18614031015), WebsiteProps(id=1251262790791545190, tenantId=1146029695717560320, journalId=null, journalGroupId=null, siteId=1251257283611672652, code=minRunFlag, value=0, createTime=1776253896663, updateTime=1776253896663, creator=18614031015, updator=18614031015), WebsiteProps(id=1251262790753796448, tenantId=1146029695717560320, journalId=null, journalGroupId=null, siteId=1251257283611672652, code=picServerUrl, value=https://castjournals.cast.org.cn/joweb/xxdkjs/EN/file/pic, createTime=1776253896654, updateTime=1776253896654, creator=18614031015, updator=18614031015), WebsiteProps(id=1251262790783156581, tenantId=1146029695717560320, journalId=null, journalGroupId=null, siteId=1251257283611672652, code=silenceFlag, value=0, createTime=1776253896661, updateTime=1776253896661, creator=18614031015, updator=18614031015), WebsiteProps(id=1251262790745407839, tenantId=1146029695717560320, journalId=null, journalGroupId=null, siteId=1251257283611672652, code=staticResourcePath, value=https://castjournals.cast.org.cn/joweb/cast_kjdb_en_623/, createTime=1776253896652, updateTime=1776253896652, creator=18614031015, updator=18614031015), WebsiteProps(id=1251262790766379362, tenantId=1146029695717560320, journalId=null, journalGroupId=null, siteId=1251257283611672652, code=themeColor, value=null, createTime=1776253896657, updateTime=1776253896657, creator=18614031015, updator=18614031015), WebsiteProps(id=1251262790770573667, tenantId=1146029695717560320, journalId=null, journalGroupId=null, siteId=1251257283611672652, code=themeStyle, value=null, createTime=1776253896658, updateTime=1776253896658, creator=18614031015, updator=18614031015)])], journalTitle=信息对抗技术, weixinUrl=null, journalUrl=http://xxdkjs.ijournals.cn/, iacademicId=null, status=1, seqNo=null, journalTitleEn=Information Countermeasure Technology, journalPhotoCn=28NAsfRnEEIAv0GvsYImxg==, journalPhotoEn=W2zeGuQU+j8zRKRf0eBlGA==, journalFirstLetter=I, journalRecommend=null, journalNew=null, journalCollection=null, jcrJf=null, cjcrJf=null, jcrJfStr=null, cjcrJfStr=null, submissionFirstDecision=null, sciSubjectClassification=null, casSubjectClassification=null, citeScore=null, totalCitationFrequency=null, icpCode=null, psCode=null, advertisingLicenseCode=null, copyrightInformation=null, country=null, option=, provinceCode=null, provinceName=null, collectFlag=false), detailUrlCn=https://castjournals.cast.org.cn/joweb/xxdkjs/CN/10.12399/j.issn.2097-163x.2025.05.005, detailUrlEn=https://castjournals.cast.org.cn/joweb/xxdkjs/EN/10.12399/j.issn.2097-163x.2025.05.005, pdfUrlCn=https://castjournals.cast.org.cn/joweb/xxdkjs/CN/PDF/10.12399/j.issn.2097-163x.2025.05.005, pdfUrlEn=https://castjournals.cast.org.cn/joweb/xxdkjs/EN/PDF/10.12399/j.issn.2097-163x.2025.05.005, aliStartDate=null, aliEndDate=null, collectionFlag=false, citedCount=null, citedUrl=null, reference=null)