Matches in SemOpenAlex for { <https://semopenalex.org/work/W1983142587> ?p ?o ?g. }
- W1983142587 abstract "Security remains a major roadblock to universal acceptance of the Web for many kinds of transactions, especially since the recent sharp increase in remotely exploitable vulnerabilities have been attributed to Web application bugs. Many verification tools are discovering previously unknown vulnerabilities in legacy C programs, raising hopes that the same success can be achieved with Web applications. In this paper, we describe a sound and holistic approach to ensuring Web application security. Viewing Web application vulnerabilities as a secure information flow problem, we created a lattice-based static analysis algorithm derived from type systems and typestate, and addressed its soundness. During the analysis, sections of code considered vulnerable are instrumented with runtime guards, thus securing Web applications in the absence of user intervention. With sufficient annotations, runtime overhead can be reduced to zero. We also created a tool named.WebSSARI (Web application Security by Static Analysis and Runtime Inspection) to test our algorithm, and used it to verify 230 open-source Web application projects on SourceForge.net, which were selected to represent projects of different maturity, popularity, and scale. 69 contained vulnerabilities. After notifying the developers, 38 acknowledged our findings and stated their plans to provide patches. Our statistics also show that static analysis reduced potential runtime overhead by 98.4%." @default.
- W1983142587 created "2016-06-24" @default.
- W1983142587 creator A5015051497 @default.
- W1983142587 creator A5022580520 @default.
- W1983142587 creator A5034127072 @default.
- W1983142587 creator A5039286499 @default.
- W1983142587 creator A5043885374 @default.
- W1983142587 creator A5085034614 @default.
- W1983142587 date "2004-05-17" @default.
- W1983142587 modified "2023-10-01" @default.
- W1983142587 title "Securing web application code by static analysis and runtime protection" @default.
- W1983142587 cites W1963569294 @default.
- W1983142587 cites W1984742153 @default.
- W1983142587 cites W1993302007 @default.
- W1983142587 cites W1993836075 @default.
- W1983142587 cites W1998070736 @default.
- W1983142587 cites W2003115932 @default.
- W1983142587 cites W2006591097 @default.
- W1983142587 cites W2007999111 @default.
- W1983142587 cites W2016558072 @default.
- W1983142587 cites W2022710885 @default.
- W1983142587 cites W2031867273 @default.
- W1983142587 cites W2034711041 @default.
- W1983142587 cites W2036910349 @default.
- W1983142587 cites W2043100293 @default.
- W1983142587 cites W2044590882 @default.
- W1983142587 cites W2047615655 @default.
- W1983142587 cites W2054696368 @default.
- W1983142587 cites W2055886480 @default.
- W1983142587 cites W2061056245 @default.
- W1983142587 cites W2063058836 @default.
- W1983142587 cites W2069107692 @default.
- W1983142587 cites W2094873755 @default.
- W1983142587 cites W2102632372 @default.
- W1983142587 cites W2103714221 @default.
- W1983142587 cites W2104269336 @default.
- W1983142587 cites W2106972913 @default.
- W1983142587 cites W2107574641 @default.
- W1983142587 cites W2110491615 @default.
- W1983142587 cites W2119736157 @default.
- W1983142587 cites W2122049982 @default.
- W1983142587 cites W2156268601 @default.
- W1983142587 cites W2158126684 @default.
- W1983142587 cites W2160668141 @default.
- W1983142587 cites W2160829153 @default.
- W1983142587 cites W2162436812 @default.
- W1983142587 cites W2173102238 @default.
- W1983142587 cites W2997271062 @default.
- W1983142587 cites W4234020632 @default.
- W1983142587 doi "https://doi.org/10.1145/988672.988679" @default.
- W1983142587 hasPublicationYear "2004" @default.
- W1983142587 type Work @default.
- W1983142587 sameAs 1983142587 @default.
- W1983142587 citedByCount "501" @default.
- W1983142587 countsByYear W19831425872012 @default.
- W1983142587 countsByYear W19831425872013 @default.
- W1983142587 countsByYear W19831425872014 @default.
- W1983142587 countsByYear W19831425872015 @default.
- W1983142587 countsByYear W19831425872016 @default.
- W1983142587 countsByYear W19831425872017 @default.
- W1983142587 countsByYear W19831425872018 @default.
- W1983142587 countsByYear W19831425872019 @default.
- W1983142587 countsByYear W19831425872020 @default.
- W1983142587 countsByYear W19831425872021 @default.
- W1983142587 countsByYear W19831425872022 @default.
- W1983142587 countsByYear W19831425872023 @default.
- W1983142587 crossrefType "proceedings-article" @default.
- W1983142587 hasAuthorship W1983142587A5015051497 @default.
- W1983142587 hasAuthorship W1983142587A5022580520 @default.
- W1983142587 hasAuthorship W1983142587A5034127072 @default.
- W1983142587 hasAuthorship W1983142587A5039286499 @default.
- W1983142587 hasAuthorship W1983142587A5043885374 @default.
- W1983142587 hasAuthorship W1983142587A5085034614 @default.
- W1983142587 hasConcept C118643609 @default.
- W1983142587 hasConcept C136764020 @default.
- W1983142587 hasConcept C137287247 @default.
- W1983142587 hasConcept C199360897 @default.
- W1983142587 hasConcept C22680326 @default.
- W1983142587 hasConcept C2777904410 @default.
- W1983142587 hasConcept C2779960059 @default.
- W1983142587 hasConcept C29983905 @default.
- W1983142587 hasConcept C35578498 @default.
- W1983142587 hasConcept C38369872 @default.
- W1983142587 hasConcept C38652104 @default.
- W1983142587 hasConcept C39920170 @default.
- W1983142587 hasConcept C41008148 @default.
- W1983142587 hasConcept C43126263 @default.
- W1983142587 hasConcept C527648132 @default.
- W1983142587 hasConcept C529173508 @default.
- W1983142587 hasConcept C59241245 @default.
- W1983142587 hasConcept C62913178 @default.
- W1983142587 hasConcept C79373723 @default.
- W1983142587 hasConcept C97686452 @default.
- W1983142587 hasConceptScore W1983142587C118643609 @default.
- W1983142587 hasConceptScore W1983142587C136764020 @default.
- W1983142587 hasConceptScore W1983142587C137287247 @default.
- W1983142587 hasConceptScore W1983142587C199360897 @default.
- W1983142587 hasConceptScore W1983142587C22680326 @default.
- W1983142587 hasConceptScore W1983142587C2777904410 @default.
- W1983142587 hasConceptScore W1983142587C2779960059 @default.