Defending Cloud Web Applications Using Machine Learning-Driven Triple Validation of IP Reputation by Integrating Security Operation Center

Article ID

CSTNWS22J06

Defending Cloud Web Applications Using Machine Learning-Driven Triple Validation of IP Reputation by Integrating Security Operation Center

Chanaka Lasantha Nanayakkara
Chanaka Lasantha Nanayakkara
Ruvan Abeysekara
Ruvan Abeysekara
MWP Maduranga
MWP Maduranga
DOI

Abstract

This paper will present an innovative system method of IPR (IP Address Reputation) validation with the assistance of clause of (ML) machine learning for discovering malicious IPs, while also viewing the importance of security of installed applications on AWS (Amazon Web Services) servers. The ML, SANS and AbuseDB datasets that were verified are being integrated through the Wazuh Security Operation Centre (SOC) stage to consume issues at the log ingesting IP address-related level. Having integrated extraction of IPs Wazuh agents, the output does match MITRE ATT&CK framework-filtered IP address from the Wazuh SOC. These algorithms and models based on natural language processing will flag suspicious patterns across IPs through the process of machine learning and prevent the event of a cyberattack at the time. This integration not only boosts cybersecurity information through a single point source of distribution, but it also provides security finds and other resources to prove and maintain awareness against malicious IPs. The final solution includes using the maximum amounts of bad IPs blocking in the ‘IP-List’ of AWS WAF and, if they are added to the Blacklist automatically, checking them through an automatic ML-based signature validation process.

Defending Cloud Web Applications Using Machine Learning-Driven Triple Validation of IP Reputation by Integrating Security Operation Center

This paper will present an innovative system method of IPR (IP Address Reputation) validation with the assistance of clause of (ML) machine learning for discovering malicious IPs, while also viewing the importance of security of installed applications on AWS (Amazon Web Services) servers. The ML, SANS and AbuseDB datasets that were verified are being integrated through the Wazuh Security Operation Centre (SOC) stage to consume issues at the log ingesting IP address-related level. Having integrated extraction of IPs Wazuh agents, the output does match MITRE ATT&CK framework-filtered IP address from the Wazuh SOC. These algorithms and models based on natural language processing will flag suspicious patterns across IPs through the process of machine learning and prevent the event of a cyberattack at the time. This integration not only boosts cybersecurity information through a single point source of distribution, but it also provides security finds and other resources to prove and maintain awareness against malicious IPs. The final solution includes using the maximum amounts of bad IPs blocking in the ‘IP-List’ of AWS WAF and, if they are added to the Blacklist automatically, checking them through an automatic ML-based signature validation process.

Chanaka Lasantha Nanayakkara
Chanaka Lasantha Nanayakkara
Ruvan Abeysekara
Ruvan Abeysekara
MWP Maduranga
MWP Maduranga

No Figures found in article.

Chanaka Lasantha Nanayakkara. 2026. “. Global Journal of Computer Science and Technology – E: Network, Web & Security GJCST-E Volume 24 (GJCST Volume 24 Issue E1): .

Download Citation

Journal Specifications

Crossref Journal DOI 10.17406/gjcst

Print ISSN 0975-4350

e-ISSN 0975-4172

Classification
Not Found
Keywords
Article Matrices
Total Views: 1024
Total Downloads: 9
2026 Trends
Research Identity (RIN)
Related Research
Our website is actively being updated, and changes may occur frequently. Please clear your browser cache if needed. For feedback or error reporting, please email [email protected]

Request Access

Please fill out the form below to request access to this research paper. Your request will be reviewed by the editorial or author team.
X

Quote and Order Details

Contact Person

Invoice Address

Notes or Comments

This is the heading

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Ut elit tellus, luctus nec ullamcorper mattis, pulvinar dapibus leo.

High-quality academic research articles on global topics and journals.

Defending Cloud Web Applications Using Machine Learning-Driven Triple Validation of IP Reputation by Integrating Security Operation Center

Chanaka Lasantha Nanayakkara
Chanaka Lasantha Nanayakkara
Ruvan Abeysekara
Ruvan Abeysekara
MWP Maduranga
MWP Maduranga

Research Journals