Suchergebnisse - JavaScript sandbox
-
1
JSCSP: A Novel Policy-Based XSS Defense Mechanism for Browsers
ISSN: 1545-5971, 1941-0018Veröffentlicht: Washington IEEE 01.03.2022Veröffentlicht in IEEE transactions on dependable and secure computing (01.03.2022)“… To explore the scalability of CSP, in this article, we propose JavaScript based CSP (JSCSP), which is able to support most of real-world browsers but also to generate security policies automatically …”
Volltext
Journal Article -
2
Securing IoT devices using JavaScript based sandbox
Veröffentlicht: IEEE 01.05.2016Veröffentlicht in 2016 IEEE International Conference on Recent Trends in Electronics, Information & Communication Technology (RTEICT) (01.05.2016)“… In this paper, we try to address the security issue by proposing JavaScript sandbox as a method to execute IoT program …”
Volltext
Tagungsbericht -
3
JavaScript malware behaviour analysis and detection using sandbox assisted ensemble model
ISSN: 2159-3450Veröffentlicht: IEEE 16.11.2020Veröffentlicht in TENCON ... IEEE Region Ten Conference (16.11.2020)“… In this paper, we propose a novel technique for analysing and detecting JavaScript using sandbox assisted ensemble model …”
Volltext
Tagungsbericht -
4
Fakeium: A dynamic execution environment for JavaScript program analysis
ISSN: 2352-7110, 2352-7110Veröffentlicht: Elsevier B.V 01.09.2025Veröffentlicht in SoftwareX (01.09.2025)“… The JavaScript programming language, which began as a simple scripting language for the Web, has become ubiquitous, spanning desktop, mobile, and server applications …”
Volltext
Journal Article -
5
The Spy in the Sandbox -- Practical Cache Attacks in Javascript
ISSN: 2331-8422Veröffentlicht: Ithaca Cornell University Library, arXiv.org 01.03.2015Veröffentlicht in arXiv.org (01.03.2015)“… We present the first micro-architectural side-channel attack which runs entirely in the browser. In contrast to other works in this genre, this attack does not …”
Volltext
Paper -
6
SoK: In Search of Lost Time: A Review of JavaScript Timers in Browsers
Veröffentlicht: IEEE 01.09.2021Veröffentlicht in 2021 IEEE European Symposium on Security and Privacy (EuroS&P) (01.09.2021)“… They rely on subtle timing differences to infer information that should not be available inside of the JavaScript sandbox …”
Volltext
Tagungsbericht -
7
Next-generation antivirus for JavaScript malware detection based on dynamic features
ISSN: 0219-1377, 0219-3116Veröffentlicht: London Springer London 01.02.2024Veröffentlicht in Knowledge and information systems (01.02.2024)“… There are many kinds of Exploit Kits, each one being built with several vulnerabilities, but almost all of them are written in JavaScript …”
Volltext
Journal Article -
8
A framework for leaking secrets to past instructions
ISSN: 2190-8508, 2190-8516Veröffentlicht: Berlin/Heidelberg Springer Berlin Heidelberg 01.11.2022Veröffentlicht in Journal of cryptographic engineering (01.11.2022)“… Transient execution attacks use microarchitectural covert channels to leak secrets that should not have been accessible during logical program execution …”
Volltext
Journal Article -
9
Detection, Diagnosis and Mitigation of Malicious Javascript with Enriched Javascript Executions
ISBN: 0355648652, 9780355648652Veröffentlicht: ProQuest Dissertations & Theses 01.01.2017“… Malicious JavaScript has become an important attack vector for software exploitation attacks and imposes a severe threat to computer security …”
Volltext
Dissertation -
10
Eloquent JavaScript: A Modern Introduction to Programming
ISBN: 1593275846, 9781593275846Veröffentlicht: San Francisco No Starch Press, Incorporated 2014“… JavaScript lies at the heart of almost every modern web application, from social apps to the newest browser-based games …”
Volltext
E-Book -
11
Vulnerabilities in Android webview objects: Still not the end
ISSN: 0167-4048, 1872-6208Veröffentlicht: Amsterdam Elsevier Ltd 01.10.2021Veröffentlicht in Computers & security (01.10.2021)“… Thus, while rendering web content a hybrid app can execute malicious Javascript code that can access the sensitive data on the device, bypassing the sandbox model usually adopted by standalone browsers …”
Volltext
Journal Article -
12
Dynamic Analysis for JavaScript Code
ISBN: 9780438324893, 0438324897Veröffentlicht: ProQuest Dissertations & Theses 01.01.2018“… Our extension of Jalangi intercepts and rewrites JavaScript code during network transmission. We also develop NodeSec, which is a dynamic instrumentation framework that traces and sandboxes the interactions …”
Volltext
Dissertation -
13
ADsafety: Type-Based Verification of JavaScript Sandboxing
ISSN: 2331-8422Veröffentlicht: Ithaca Cornell University Library, arXiv.org 25.06.2015Veröffentlicht in arXiv.org (25.06.2015)“… These sources must be protected from one another, which requires robust sandboxing. The many entry-points of sandboxes and the subtleties of JavaScript demand robust verification of the actual sandbox source …”
Volltext
Paper -
14
Hacky Racers: Exploiting Instruction-Level Parallelism to Generate Stealthy Fine-Grained Timers
ISSN: 2331-8422Veröffentlicht: Ithaca Cornell University Library, arXiv.org 26.11.2022Veröffentlicht in arXiv.org (26.11.2022)“… , even in the presence of highly restricted JavaScript sandbox environments. While such environments try to mitigate timing side channels by reducing timer precision and removing language features such as \textit{SharedArrayBuffer …”
Volltext
Paper -
15
Exploiting ML algorithms for Efficient Detection and Prevention of JavaScript-XSS Attacks in Android Based Hybrid Applications
ISSN: 2331-8422Veröffentlicht: Ithaca Cornell University Library, arXiv.org 30.07.2020Veröffentlicht in arXiv.org (30.07.2020)“… WebView is an important component in hybrid mobile applications which used to implements a sandbox mechanism to protect the local resources of smartphone devices from un-authorized access of JavaScript …”
Volltext
Paper -
16
Transaction-based Sandboxing for JavaScript
ISSN: 2331-8422Veröffentlicht: Ithaca Cornell University Library, arXiv.org 17.01.2017Veröffentlicht in arXiv.org (17.01.2017)“… This paper presents design and implementation of DecentJS, a language-embedded sandbox for full JavaScript …”
Volltext
Paper -
17
PDF Malicious Indicators Extraction Technique Based on Improved Symbolic Execution
ISSN: 1002-137XVeröffentlicht: Chongqing Guojia Kexue Jishu Bu 01.07.2024Veröffentlicht in Ji suan ji ke xue (01.07.2024)“… The malicious PDF document is a common attack method used by APT organizations.Analyzing extracted indicators of embedded JavaScript code is an important means to determine the maliciousness …”
Volltext
Journal Article -
18
TreatJS: Higher-Order Contracts for JavaScript
ISSN: 2331-8422Veröffentlicht: Ithaca Cornell University Library, arXiv.org 30.04.2015Veröffentlicht in arXiv.org (30.04.2015)“… TreatJS is a language embedded, higher-order contract system for JavaScript which enforces contracts by run-time monitoring …”
Volltext
Paper -
19
TreatJS: Higher-Order Contracts for JavaScript (Artifact)
ISSN: 2509-8195Veröffentlicht: Schloss Dagstuhl – Leibniz-Zentrum für Informatik 30.10.2015“… TreatJS is a language embedded, higher-order contract system for JavaScript which enforces contracts by run-time monitoring …”
Volltext
Datensatz -
20
Adobe Zero-Day Attack Bypasses Sandbox
ISSN: 1938-3371Veröffentlicht: London Informa 14.02.2013Veröffentlicht in Informationweek - Online (14.02.2013)Volltext
Trade Publication Article

