Matches in SemOpenAlex for { <https://semopenalex.org/work/W2095804328> ?p ?o ?g. }
Showing items 1 to 79 of
79
with 100 items per page.
- W2095804328 abstract "Most web programs are vulnerable to cross site scripting (XSS) that can be exploited by injecting JavaScript code. Unfortunately, injected JavaScript code is difficult to distinguish from the legitimate code at the client side. Given that, server side detection of injected JavaScript code can be a layer of defense. Existing server side approaches rely on identifying legitimate script code, and an attacker can circumvent the technique by injecting legitimate JavaScript code. Moreover, these approaches assume that no JavaScript code is downloaded from third party websites. To address these limitations, we develop a server side approach that distinguishes injected JavaScript code from legitimate JavaScript code. Our approach is based on the concept of injecting comment statements containing random tokens and features of legitimate JavaScript code. When a response page is generated, JavaScript code without or incorrect comment is considered as injected code. Moreover, the valid comments are checked for duplicity. Any presence of duplicate comments or a mismatch between expected code features and actually observed features represents JavaScript code as injected. We implement a prototype tool that automatically injects JavaScript comments and deploy injected JavaScript code detector as a server side filter. We evaluate our approach with three JSP programs. The evaluation results indicate that our approach detects a wide range of code injection attacks." @default.
- W2095804328 created "2016-06-24" @default.
- W2095804328 creator A5005563986 @default.
- W2095804328 creator A5052820694 @default.
- W2095804328 date "2011-07-01" @default.
- W2095804328 modified "2023-09-23" @default.
- W2095804328 title "Injecting Comments to Detect JavaScript Code Injection Attacks" @default.
- W2095804328 cites W2065850471 @default.
- W2095804328 cites W2102457045 @default.
- W2095804328 cites W2116774218 @default.
- W2095804328 cites W2134646643 @default.
- W2095804328 cites W2148211687 @default.
- W2095804328 cites W2150898646 @default.
- W2095804328 cites W2153106208 @default.
- W2095804328 cites W2164600404 @default.
- W2095804328 cites W2168563136 @default.
- W2095804328 doi "https://doi.org/10.1109/compsacw.2011.27" @default.
- W2095804328 hasPublicationYear "2011" @default.
- W2095804328 type Work @default.
- W2095804328 sameAs 2095804328 @default.
- W2095804328 citedByCount "22" @default.
- W2095804328 countsByYear W20958043282013 @default.
- W2095804328 countsByYear W20958043282014 @default.
- W2095804328 countsByYear W20958043282015 @default.
- W2095804328 countsByYear W20958043282017 @default.
- W2095804328 countsByYear W20958043282018 @default.
- W2095804328 countsByYear W20958043282019 @default.
- W2095804328 countsByYear W20958043282021 @default.
- W2095804328 countsByYear W20958043282022 @default.
- W2095804328 crossrefType "proceedings-article" @default.
- W2095804328 hasAuthorship W2095804328A5005563986 @default.
- W2095804328 hasAuthorship W2095804328A5052820694 @default.
- W2095804328 hasConcept C103048170 @default.
- W2095804328 hasConcept C111919701 @default.
- W2095804328 hasConcept C118643609 @default.
- W2095804328 hasConcept C177264268 @default.
- W2095804328 hasConcept C198240166 @default.
- W2095804328 hasConcept C199360897 @default.
- W2095804328 hasConcept C2776760102 @default.
- W2095804328 hasConcept C35578498 @default.
- W2095804328 hasConcept C39569185 @default.
- W2095804328 hasConcept C41008148 @default.
- W2095804328 hasConcept C43126263 @default.
- W2095804328 hasConcept C544833334 @default.
- W2095804328 hasConcept C59241245 @default.
- W2095804328 hasConcept C61423126 @default.
- W2095804328 hasConcept C79373723 @default.
- W2095804328 hasConceptScore W2095804328C103048170 @default.
- W2095804328 hasConceptScore W2095804328C111919701 @default.
- W2095804328 hasConceptScore W2095804328C118643609 @default.
- W2095804328 hasConceptScore W2095804328C177264268 @default.
- W2095804328 hasConceptScore W2095804328C198240166 @default.
- W2095804328 hasConceptScore W2095804328C199360897 @default.
- W2095804328 hasConceptScore W2095804328C2776760102 @default.
- W2095804328 hasConceptScore W2095804328C35578498 @default.
- W2095804328 hasConceptScore W2095804328C39569185 @default.
- W2095804328 hasConceptScore W2095804328C41008148 @default.
- W2095804328 hasConceptScore W2095804328C43126263 @default.
- W2095804328 hasConceptScore W2095804328C544833334 @default.
- W2095804328 hasConceptScore W2095804328C59241245 @default.
- W2095804328 hasConceptScore W2095804328C61423126 @default.
- W2095804328 hasConceptScore W2095804328C79373723 @default.
- W2095804328 hasLocation W20958043281 @default.
- W2095804328 hasOpenAccess W2095804328 @default.
- W2095804328 hasPrimaryLocation W20958043281 @default.
- W2095804328 hasRelatedWork W2004762911 @default.
- W2095804328 hasRelatedWork W2021830931 @default.
- W2095804328 hasRelatedWork W2136944226 @default.
- W2095804328 hasRelatedWork W2164373874 @default.
- W2095804328 hasRelatedWork W2907490423 @default.
- W2095804328 hasRelatedWork W4229549207 @default.
- W2095804328 hasRelatedWork W4237609564 @default.
- W2095804328 hasRelatedWork W4244528768 @default.
- W2095804328 hasRelatedWork W4244988352 @default.
- W2095804328 hasRelatedWork W567776558 @default.
- W2095804328 isParatext "false" @default.
- W2095804328 isRetracted "false" @default.
- W2095804328 magId "2095804328" @default.
- W2095804328 workType "article" @default.