Výsledky vyhledávání - untrusted JavaScript code*

Alternativní vyhledávání:

  1. 1

    A client‐server JavaScript code rewriting‐based framework to detect the XSS worms from online social network Autor Gupta, Shashank, Gupta, B.B., Chaudhary, Pooja

    ISSN: 1532-0626, 1532-0634
    Vydáno: Hoboken Wiley Subscription Services, Inc 10.11.2019
    Vydáno v Concurrency and computation (10.11.2019)
    “… This shifting is done for completely isolating the untrusted JavaScript code and data. The client‐side performs runtime monitoring of the dynamic JavaScript code to recognize the tainted flow of untrusted JavaScript variables…”
    Získat plný text
    Journal Article
  2. 2

    Jailed JavaScript library runs untrusted code safely in browsers, Node.js Autor Yegulalp, Serdar

    Vydáno: San Mateo Foundry 13.06.2016
    Vydáno v InfoWorld.com (13.06.2016)
    “… ] Jailed, written by JavaScript developer Dmitry Prokashev, uses native JavaScript functions to load a set of JavaScript code into a sandboxed environment and export functions to the outside world…”
    Získat plný text
    Trade Publication Article
  3. 3

    Automated Analysis of Security-Critical JavaScript APIs Autor Taly, A., Erlingsson, Mitchell, J. C., Miller, M. S., Nagra, J.

    ISBN: 1457701472, 9781457701474
    ISSN: 1081-6011
    Vydáno: IEEE 01.05.2011
    “… To provide services ranging from maps to advertisements, Web applications may incorporate untrusted JavaScript code from third parties…”
    Získat plný text
    Konferenční příspěvek
  4. 4

    NodeXP: NOde.js server-side JavaScript injection vulnerability DEtection and eXPloitation Autor Ntantogian, Christoforos, Bountakas, Panagiotis, Antonaropoulos, Dimitris, Patsakis, Constantinos, Xenakis, Christos

    ISSN: 2214-2126
    Vydáno: Elsevier Ltd 01.05.2021
    “…; Node.js is no exception, as Server-Side JavaScript Injection (SSJI) attacks are possible due to the use of vulnerable functions and neglecting to sanitize data input provided by untrusted sources…”
    Získat plný text
    Journal Article
  5. 5

    XSS-secure as a service for the platforms of online social network-based multimedia web applications in cloud Autor Gupta, Shashank, Gupta, B. B.

    ISSN: 1380-7501, 1573-7721
    Vydáno: New York Springer US 01.02.2018
    Vydáno v Multimedia tools and applications (01.02.2018)
    “… It operates in two modes: training and detection mode. The former mode sanitizes the extracted untrusted variables of JavaScript code in a context-aware manner…”
    Získat plný text
    Journal Article
  6. 6

    A Large Scale Analysis of Android — Web Hybridization Autor Tiwari, Abhishek, Prakash, Jyoti, Groß, Sascha, Hammer, Christian

    ISSN: 0164-1212
    Vydáno: Elsevier Inc 01.12.2020
    Vydáno v The Journal of systems and software (01.12.2020)
    “…Many Android applications embed webpages via WebView components and execute JavaScript code within Android…”
    Získat plný text
    Journal Article
  7. 7

    Language-Based Isolation of Untrusted JavaScript Autor Maffeis, S., Taly, A.

    ISBN: 076953712X, 9780769537122
    ISSN: 1063-6900
    Vydáno: IEEE 01.07.2009
    “… We study language-based methods for filtering and rewriting JavaScript code, using Yahoo…”
    Získat plný text
    Konferenční příspěvek
  8. 8

    LUDroid: A Large Scale Analysis of Android - Web Hybridization Autor Tiwari, Abhishek, Prakash, Jyoti, Gross, Sascha, Hammer, Christian

    ISSN: 2470-6892
    Vydáno: IEEE 01.09.2019
    “…Many Android applications embed webpages via WebView components and execute JavaScript code within Android…”
    Získat plný text
    Konferenční příspěvek
  9. 9

    Hunting for DOM-Based XSS vulnerabilities in mobile cloud-based online social network Autor Gupta, Shashank, Gupta, B.B., Chaudhary, Pooja

    ISSN: 0167-739X, 1872-7115
    Vydáno: Elsevier B.V 01.02.2018
    Vydáno v Future generation computer systems (01.02.2018)
    “… The online mode detects the injection of untrusted script content in the DOM tree generated at runtime…”
    Získat plný text
    Journal Article
  10. 10
  11. 11

    Lightweight Enforcement of Fine-grained Security Policies for Untrusted Software Autor Phung, Phu H

    ISBN: 1392367204, 9781392367209
    Vydáno: ProQuest Dissertations & Theses 01.01.2011
    “…This thesis presents an innovative approach to implementing a security enforcement mechanism in the contexts of untrusted software systems, where a piece of code in a base system may come from an untrusted third party…”
    Získat plný text
    Dissertation
  12. 12

    InspectJS: Leveraging Code Similarity and User-Feedback for Effective Taint Specification Inference for JavaScript Autor Dutta, Saikat, Garbervetsky, Diego, Lahiri, Shuvendu K., Schafer, Max

    Vydáno: IEEE 01.05.2022
    “… Taint analysis in particular is a very general and powerful technique, where security policies are expressed in terms of forbidden flows, either from untrusted input sources to sensitive sinks…”
    Získat plný text
    Konferenční příspěvek
  13. 13

    WebC: toward a portable framework for deploying legacy code in web browsers Autor Yin, Jie, Tan, Gang, Bai, XiaoLong, Hu, ShiMin

    ISSN: 1674-733X, 1869-1919
    Vydáno: Beijing Science China Press 01.07.2015
    Vydáno v Science China. Information sciences (01.07.2015)
    “…For security, most web applications are developed in some type-safe language, such as JavaScript or Java…”
    Získat plný text
    Journal Article
  14. 14

    HybriDroid: Static analysis framework for Android hybrid applications Autor Sungho Lee, Dolby, Julian, Sukyoung Ryu

    Vydáno: ACM 01.09.2016
    “… Moreover, because untrusted JavaScript code may access device-specific features via native code, hybrid apps may be vulnerable to various security attacks…”
    Získat plný text
    Konferenční příspěvek
  15. 15

    Sandboxing Untrusted JavaScript Autor Taly, Ankur

    ISBN: 9798662531406
    Vydáno: ProQuest Dissertations & Theses 01.01.2013
    “… Such third-party content often comprises of executable code, commonly written in JavaScript, that runs together with Web site's code in the user's browser…”
    Získat plný text
    Dissertation
  16. 16

    CSSXC: Context-sensitive Sanitization Framework for Web Applications against XSS Vulnerabilities in Cloud Environments Autor Gupta, Shashank, Gupta, B.B.

    ISSN: 1877-0509, 1877-0509
    Vydáno: Elsevier B.V 2016
    Vydáno v Procedia computer science (2016)
    “… the sanitizers on the untrusted variables of web application. The XSS attack mitigation capability of our framework was evaluated on web applications deployed for the cloud users in the cloud environment…”
    Získat plný text
    Journal Article
  17. 17

    InspectJS: Leveraging Code Similarity and User-Feedback for Effective Taint Specification Inference for JavaScript Autor Dutta, Saikat, Garbervetsky, Diego, Lahiri, Shuvendu, Schäfer, Max

    ISSN: 2331-8422
    Vydáno: Ithaca Cornell University Library, arXiv.org 18.11.2021
    Vydáno v arXiv.org (18.11.2021)
    “… Taint analysis in particular is a very general and powerful technique, where security policies are expressed in terms of forbidden flows, either from untrusted input sources to sensitive sinks…”
    Získat plný text
    Paper
  18. 18

    Spook.js: Attacking Chrome Strict Site Isolation via Speculative Execution Autor Agarwal, Ayush, O'Connell, Sioli, Kim, Jason, Yehezkel, Shaked, Genkin, Daniel, Ronen, Eyal, Yarom, Yuval

    ISSN: 2375-1207
    Vydáno: IEEE 01.05.2022
    “…, and more. Because web browsers execute untrusted code while potentially accessing sensitive information, they were considered prime targets for attacks and underwent significant changes to protect users…”
    Získat plný text
    Konferenční příspěvek
  19. 19

    ESFuzzer: An Efficient Way to Fuzz WebAssembly Interpreter Autor Han, Jideng, Zhang, Zhaoxin, Du, Yuejin, Wang, Wei, Chen, Xiuyuan

    ISSN: 2079-9292, 2079-9292
    Vydáno: Basel MDPI AG 01.04.2024
    Vydáno v Electronics (Basel) (01.04.2024)
    “… This enables the execution of untrusted code in a web browser without compromising the security and integrity of the user’s system…”
    Získat plný text
    Journal Article
  20. 20

    Designing a XSS Defensive Framework for Web Servers Deployed in the Existing Smart City Infrastructure Autor Gupta, Shashank, Gupta, Brij B, Chaudhary, Pooja

    ISSN: 1546-2234, 1546-5012
    Vydáno: Hershey IGI Global 01.10.2020
    “… the smart city environment. The proposed framework implements 2 approaches: first, it executes vulnerable flow tracking for filtering injected malicious scripting code in dynamic web pages…”
    Získat plný text
    Journal Article