Suchergebnisse - untrusted JavaScript code

Andere Suchmöglichkeiten:

  1. 1

    A client‐server JavaScript code rewriting‐based framework to detect the XSS worms from online social network von Gupta, Shashank, Gupta, B.B., Chaudhary, Pooja

    ISSN: 1532-0626, 1532-0634
    Veröffentlicht: Hoboken Wiley Subscription Services, Inc 10.11.2019
    Veröffentlicht in Concurrency and computation (10.11.2019)
    “… This shifting is done for completely isolating the untrusted JavaScript code and data. The client‐side performs runtime monitoring of the dynamic JavaScript code to recognize the tainted flow of untrusted JavaScript variables …”
    Volltext
    Journal Article
  2. 2

    Jailed JavaScript library runs untrusted code safely in browsers, Node.js von Yegulalp, Serdar

    Veröffentlicht: San Mateo Foundry 13.06.2016
    Veröffentlicht in InfoWorld.com (13.06.2016)
    “… ] Jailed, written by JavaScript developer Dmitry Prokashev, uses native JavaScript functions to load a set of JavaScript code into a sandboxed environment and export functions to the outside world …”
    Volltext
    Trade Publication Article
  3. 3

    Automated Analysis of Security-Critical JavaScript APIs von Taly, A., Erlingsson, Mitchell, J. C., Miller, M. S., Nagra, J.

    ISBN: 1457701472, 9781457701474
    ISSN: 1081-6011
    Veröffentlicht: IEEE 01.05.2011
    Veröffentlicht in 2011 IEEE Symposium on Security and Privacy (01.05.2011)
    “… To provide services ranging from maps to advertisements, Web applications may incorporate untrusted JavaScript code from third parties …”
    Volltext
    Tagungsbericht
  4. 4

    A Large Scale Analysis of Android — Web Hybridization von Tiwari, Abhishek, Prakash, Jyoti, Groß, Sascha, Hammer, Christian

    ISSN: 0164-1212
    Veröffentlicht: Elsevier Inc 01.12.2020
    Veröffentlicht in The Journal of systems and software (01.12.2020)
    “… Many Android applications embed webpages via WebView components and execute JavaScript code within Android …”
    Volltext
    Journal Article
  5. 5

    HybriDroid: Static analysis framework for Android hybrid applications von Sungho Lee, Dolby, Julian, Sukyoung Ryu

    Veröffentlicht: ACM 01.09.2016
    “… Moreover, because untrusted JavaScript code may access device-specific features via native code, hybrid apps may be vulnerable to various security attacks …”
    Volltext
    Tagungsbericht
  6. 6

    XSS-secure as a service for the platforms of online social network-based multimedia web applications in cloud von Gupta, Shashank, Gupta, B. B.

    ISSN: 1380-7501, 1573-7721
    Veröffentlicht: New York Springer US 01.02.2018
    Veröffentlicht in Multimedia tools and applications (01.02.2018)
    “… It operates in two modes: training and detection mode. The former mode sanitizes the extracted untrusted variables of JavaScript code in a context-aware manner …”
    Volltext
    Journal Article
  7. 7

    Lightweight Enforcement of Fine-grained Security Policies for Untrusted Software von Phung, Phu H

    ISBN: 1392367204, 9781392367209
    Veröffentlicht: ProQuest Dissertations & Theses 01.01.2011
    “… This thesis presents an innovative approach to implementing a security enforcement mechanism in the contexts of untrusted software systems, where a piece of code in a base system may come from an untrusted third party …”
    Volltext
    Dissertation
  8. 8

    LUDroid: A Large Scale Analysis of Android - Web Hybridization von Tiwari, Abhishek, Prakash, Jyoti, Gross, Sascha, Hammer, Christian

    ISSN: 2470-6892
    Veröffentlicht: IEEE 01.09.2019
    “… Many Android applications embed webpages via WebView components and execute JavaScript code within Android …”
    Volltext
    Tagungsbericht
  9. 9

    NodeXP: NOde.js server-side JavaScript injection vulnerability DEtection and eXPloitation von Ntantogian, Christoforos, Bountakas, Panagiotis, Antonaropoulos, Dimitris, Patsakis, Constantinos, Xenakis, Christos

    ISSN: 2214-2126
    Veröffentlicht: Elsevier Ltd 01.05.2021
    Veröffentlicht in Journal of information security and applications (01.05.2021)
    “… ; Node.js is no exception, as Server-Side JavaScript Injection (SSJI) attacks are possible due to the use of vulnerable functions and neglecting to sanitize data input provided by untrusted sources …”
    Volltext
    Journal Article
  10. 10

    Language-Based Isolation of Untrusted JavaScript von Maffeis, S., Taly, A.

    ISBN: 076953712X, 9780769537122
    ISSN: 1063-6900
    Veröffentlicht: IEEE 01.07.2009
    “… We study language-based methods for filtering and rewriting JavaScript code, using Yahoo …”
    Volltext
    Tagungsbericht
  11. 11

    Sandboxing Untrusted JavaScript von Taly, Ankur

    ISBN: 9798662531406
    Veröffentlicht: ProQuest Dissertations & Theses 01.01.2013
    “… Such third-party content often comprises of executable code, commonly written in JavaScript, that runs together with Web site's code in the user's browser …”
    Volltext
    Dissertation
  12. 12
  13. 13

    Hunting for DOM-Based XSS vulnerabilities in mobile cloud-based online social network von Gupta, Shashank, Gupta, B.B., Chaudhary, Pooja

    ISSN: 0167-739X, 1872-7115
    Veröffentlicht: Elsevier B.V 01.02.2018
    Veröffentlicht in Future generation computer systems (01.02.2018)
    “… The online mode detects the injection of untrusted script content in the DOM tree generated at runtime …”
    Volltext
    Journal Article
  14. 14

    Detecting XSS Attack Using Principal Component Analysis And Naive Bayesian Techniques von Nagham kamil albusalih, Rana jumaa aljanabi

    ISSN: 1303-5150
    Veröffentlicht: Bornova Izmir NeuroQuantology 01.01.2022
    Veröffentlicht in NeuroQuantology (01.01.2022)
    “… This malicious script is made of JavaScript code and is injected into the web application's untrusted input data …”
    Volltext
    Journal Article
  15. 15

    InspectJS: Leveraging Code Similarity and User-Feedback for Effective Taint Specification Inference for JavaScript von Dutta, Saikat, Garbervetsky, Diego, Lahiri, Shuvendu K., Schafer, Max

    Veröffentlicht: IEEE 01.05.2022
    “… Taint analysis in particular is a very general and powerful technique, where security policies are expressed in terms of forbidden flows, either from untrusted input sources to sensitive sinks …”
    Volltext
    Tagungsbericht
  16. 16

    Dynamic information flow analysis for JavaScript in a web browser von Austin, Thomas H

    ISBN: 9781303020971, 1303020971
    Veröffentlicht: ProQuest Dissertations & Theses 01.01.2013
    “… JavaScript has become a central technology of the web, but it is also the source of many security problems, including cross-site scripting attacks and malicious advertising code …”
    Volltext
    Dissertation
  17. 17

    WebC: toward a portable framework for deploying legacy code in web browsers von Yin, Jie, Tan, Gang, Bai, XiaoLong, Hu, ShiMin

    ISSN: 1674-733X, 1869-1919
    Veröffentlicht: Beijing Science China Press 01.07.2015
    Veröffentlicht in Science China. Information sciences (01.07.2015)
    “… For security, most web applications are developed in some type-safe language, such as JavaScript or Java …”
    Volltext
    Journal Article
  18. 18

    A Large Scale Analysis of Android-Web Hybridization von Tiwari, Abhishek, Prakash, Jyoti, Gross, Sascha, Hammer, Christian

    ISSN: 2331-8422
    Veröffentlicht: Ithaca Cornell University Library, arXiv.org 05.08.2020
    Veröffentlicht in arXiv.org (05.08.2020)
    “… Many Android applications embed webpages via WebView components and execute JavaScript code within Android …”
    Volltext
    Paper
  19. 19

    CSSXC: Context-sensitive Sanitization Framework for Web Applications against XSS Vulnerabilities in Cloud Environments von Gupta, Shashank, Gupta, B.B.

    ISSN: 1877-0509, 1877-0509
    Veröffentlicht: Elsevier B.V 2016
    Veröffentlicht in Procedia computer science (2016)
    “… the sanitizers on the untrusted variables of web application. The XSS attack mitigation capability of our framework was evaluated on web applications deployed for the cloud users in the cloud environment …”
    Volltext
    Journal Article
  20. 20

    ESFuzzer: An Efficient Way to Fuzz WebAssembly Interpreter von Han, Jideng, Zhang, Zhaoxin, Du, Yuejin, Wang, Wei, Chen, Xiuyuan

    ISSN: 2079-9292, 2079-9292
    Veröffentlicht: Basel MDPI AG 01.04.2024
    Veröffentlicht in Electronics (Basel) (01.04.2024)
    “… This enables the execution of untrusted code in a web browser without compromising the security and integrity of the user’s system …”
    Volltext
    Journal Article