Matches in SemOpenAlex for { <https://semopenalex.org/work/W207203746> ?p ?o ?g. }
Showing items 1 to 93 of
93
with 100 items per page.
- W207203746 abstract "We propose a generic framework called Memento for systemati cally hardening web applications. Memento models a web application’s behavior using a deterministic finite automata (DFA), where each server-side script is a state, and st ate transitions are triggered by HTTP requests. We use this DFA t o defend against cross-site request forgery (CSRF) and cros ssite-scripting (XSS) attacks. The client web browser and th e application server each maintain a view of the applicationstate. XSS and CSRF attacks either create an interaction that does n ot conform to the interaction model or force the web application’s view of the state to diverge from the user’s view. Memento derives behavior models directly from the application,and limits all run-time interactions to the derived interactio n models, flagging any state divergence as an attack. We imple mented Memento for the Apache web server and evaluated it using 8 ope n source web applications. We created Memento instances for the 8 web applications and verified Memento’s defense on 1 4 CSRF and 46 XSS attacks. Memento was able to detect all the attacks with zero false positives and a performance over head of 28%. Memento does not require any modifications in the web applications it protects." @default.
- W207203746 created "2016-06-24" @default.
- W207203746 creator A5013358324 @default.
- W207203746 creator A5016178612 @default.
- W207203746 creator A5090590060 @default.
- W207203746 date "2008-01-01" @default.
- W207203746 modified "2023-09-23" @default.
- W207203746 title "Memento: A Framework for Hardening Web Applications" @default.
- W207203746 cites W109951691 @default.
- W207203746 cites W1222699389 @default.
- W207203746 cites W142308502 @default.
- W207203746 cites W1511560695 @default.
- W207203746 cites W1559255981 @default.
- W207203746 cites W1561387739 @default.
- W207203746 cites W1582331515 @default.
- W207203746 cites W1600776630 @default.
- W207203746 cites W1857184435 @default.
- W207203746 cites W1975428729 @default.
- W207203746 cites W197713628 @default.
- W207203746 cites W2003189607 @default.
- W207203746 cites W2008158744 @default.
- W207203746 cites W2012909947 @default.
- W207203746 cites W2034958218 @default.
- W207203746 cites W2050853996 @default.
- W207203746 cites W2072978486 @default.
- W207203746 cites W2090184259 @default.
- W207203746 cites W2103378897 @default.
- W207203746 cites W2111487235 @default.
- W207203746 cites W2119085032 @default.
- W207203746 cites W2126862902 @default.
- W207203746 cites W2134646643 @default.
- W207203746 cites W2148001343 @default.
- W207203746 cites W2153790756 @default.
- W207203746 cites W2158326123 @default.
- W207203746 cites W2162316255 @default.
- W207203746 cites W2166381878 @default.
- W207203746 cites W2168563136 @default.
- W207203746 cites W2521556794 @default.
- W207203746 cites W39495240 @default.
- W207203746 cites W2485031746 @default.
- W207203746 hasPublicationYear "2008" @default.
- W207203746 type Work @default.
- W207203746 sameAs 207203746 @default.
- W207203746 citedByCount "1" @default.
- W207203746 countsByYear W2072037462014 @default.
- W207203746 crossrefType "journal-article" @default.
- W207203746 hasAuthorship W207203746A5013358324 @default.
- W207203746 hasAuthorship W207203746A5016178612 @default.
- W207203746 hasAuthorship W207203746A5090590060 @default.
- W207203746 hasConcept C110875604 @default.
- W207203746 hasConcept C11392498 @default.
- W207203746 hasConcept C118643609 @default.
- W207203746 hasConcept C127613066 @default.
- W207203746 hasConcept C136764020 @default.
- W207203746 hasConcept C13743948 @default.
- W207203746 hasConcept C154945302 @default.
- W207203746 hasConcept C199360897 @default.
- W207203746 hasConcept C21959979 @default.
- W207203746 hasConcept C39569185 @default.
- W207203746 hasConcept C41008148 @default.
- W207203746 hasConcept C59241245 @default.
- W207203746 hasConcept C61423126 @default.
- W207203746 hasConcept C79373723 @default.
- W207203746 hasConceptScore W207203746C110875604 @default.
- W207203746 hasConceptScore W207203746C11392498 @default.
- W207203746 hasConceptScore W207203746C118643609 @default.
- W207203746 hasConceptScore W207203746C127613066 @default.
- W207203746 hasConceptScore W207203746C136764020 @default.
- W207203746 hasConceptScore W207203746C13743948 @default.
- W207203746 hasConceptScore W207203746C154945302 @default.
- W207203746 hasConceptScore W207203746C199360897 @default.
- W207203746 hasConceptScore W207203746C21959979 @default.
- W207203746 hasConceptScore W207203746C39569185 @default.
- W207203746 hasConceptScore W207203746C41008148 @default.
- W207203746 hasConceptScore W207203746C59241245 @default.
- W207203746 hasConceptScore W207203746C61423126 @default.
- W207203746 hasConceptScore W207203746C79373723 @default.
- W207203746 hasLocation W2072037461 @default.
- W207203746 hasOpenAccess W207203746 @default.
- W207203746 hasPrimaryLocation W2072037461 @default.
- W207203746 hasRelatedWork W2086099967 @default.
- W207203746 hasRelatedWork W2102113604 @default.
- W207203746 hasRelatedWork W2123740012 @default.
- W207203746 hasRelatedWork W2162337690 @default.
- W207203746 hasRelatedWork W2272463326 @default.
- W207203746 hasRelatedWork W2360078942 @default.
- W207203746 hasRelatedWork W2370075171 @default.
- W207203746 hasRelatedWork W3181222742 @default.
- W207203746 hasRelatedWork W2131042600 @default.
- W207203746 isParatext "false" @default.
- W207203746 isRetracted "false" @default.
- W207203746 magId "207203746" @default.
- W207203746 workType "article" @default.