Matches in SemOpenAlex for { <https://semopenalex.org/work/W435492796> ?p ?o ?g. }
Showing items 1 to 74 of
74
with 100 items per page.
- W435492796 endingPage "277" @default.
- W435492796 startingPage "264" @default.
- W435492796 abstract "Modern web applications frequently implement complex control flows, which require the users to perform actions in a given order. Users interact with a web application by sending HTTP requests with parameters and in response receive web pages with hyperlinks that indicate the expected next actions. If a web application takes for granted that the user sends only those expected requests and parameters, malicious users can exploit this assumption by crafting harming requests. We analyze recent attacks on web applications with respect to user-defined requests and identify their root cause in the missing enforcement of allowed next user requests. Based on this result, we provide our approach, named Ghostrail, a control-flow monitor that is applicable to legacy as well as newly developed web applications. It observes incoming requests and lets only those pass that were provided as next steps in the last web page. Ghostrail protects the web application against race condition exploits, the manipulation of HTTP parameters, unsolicited request sequences, and forceful browsing. We evaluate the approach and show that it neither needs a training phase nor a manual policy definition while it is suitable for a broad range of web technologies." @default.
- W435492796 created "2016-06-24" @default.
- W435492796 creator A5035881662 @default.
- W435492796 creator A5056108231 @default.
- W435492796 creator A5088633946 @default.
- W435492796 creator A5089973472 @default.
- W435492796 date "2014-01-01" @default.
- W435492796 modified "2023-09-27" @default.
- W435492796 title "Ghostrail: Ad Hoc Control-Flow Integrity for Web Applications" @default.
- W435492796 cites W1501456447 @default.
- W435492796 cites W1559255981 @default.
- W435492796 cites W1577821534 @default.
- W435492796 cites W1845134739 @default.
- W435492796 cites W1975428729 @default.
- W435492796 cites W2079452443 @default.
- W435492796 cites W2130669926 @default.
- W435492796 cites W2144271133 @default.
- W435492796 cites W2144621365 @default.
- W435492796 cites W2162671156 @default.
- W435492796 cites W2162720432 @default.
- W435492796 doi "https://doi.org/10.1007/978-3-642-55415-5_22" @default.
- W435492796 hasPublicationYear "2014" @default.
- W435492796 type Work @default.
- W435492796 sameAs 435492796 @default.
- W435492796 citedByCount "0" @default.
- W435492796 crossrefType "book-chapter" @default.
- W435492796 hasAuthorship W435492796A5035881662 @default.
- W435492796 hasAuthorship W435492796A5056108231 @default.
- W435492796 hasAuthorship W435492796A5088633946 @default.
- W435492796 hasAuthorship W435492796A5089973472 @default.
- W435492796 hasBestOaLocation W4354927961 @default.
- W435492796 hasConcept C118643609 @default.
- W435492796 hasConcept C130436687 @default.
- W435492796 hasConcept C136764020 @default.
- W435492796 hasConcept C165696696 @default.
- W435492796 hasConcept C21959979 @default.
- W435492796 hasConcept C30088001 @default.
- W435492796 hasConcept C35578498 @default.
- W435492796 hasConcept C38652104 @default.
- W435492796 hasConcept C41008148 @default.
- W435492796 hasConcept C59241245 @default.
- W435492796 hasConcept C61096286 @default.
- W435492796 hasConcept C79373723 @default.
- W435492796 hasConceptScore W435492796C118643609 @default.
- W435492796 hasConceptScore W435492796C130436687 @default.
- W435492796 hasConceptScore W435492796C136764020 @default.
- W435492796 hasConceptScore W435492796C165696696 @default.
- W435492796 hasConceptScore W435492796C21959979 @default.
- W435492796 hasConceptScore W435492796C30088001 @default.
- W435492796 hasConceptScore W435492796C35578498 @default.
- W435492796 hasConceptScore W435492796C38652104 @default.
- W435492796 hasConceptScore W435492796C41008148 @default.
- W435492796 hasConceptScore W435492796C59241245 @default.
- W435492796 hasConceptScore W435492796C61096286 @default.
- W435492796 hasConceptScore W435492796C79373723 @default.
- W435492796 hasLocation W4354927961 @default.
- W435492796 hasOpenAccess W435492796 @default.
- W435492796 hasPrimaryLocation W4354927961 @default.
- W435492796 hasRelatedWork W124504236 @default.
- W435492796 hasRelatedWork W168684890 @default.
- W435492796 hasRelatedWork W2100071482 @default.
- W435492796 hasRelatedWork W2109885672 @default.
- W435492796 hasRelatedWork W2145319083 @default.
- W435492796 hasRelatedWork W2148670800 @default.
- W435492796 hasRelatedWork W2167278502 @default.
- W435492796 hasRelatedWork W2954487097 @default.
- W435492796 hasRelatedWork W3147180876 @default.
- W435492796 hasRelatedWork W4288492206 @default.
- W435492796 isParatext "false" @default.
- W435492796 isRetracted "false" @default.
- W435492796 magId "435492796" @default.
- W435492796 workType "book-chapter" @default.