• 综合
  • 标题
  • 关键词
  • 摘要
  • 学者
  • 期刊-刊名
  • 期刊-ISSN
  • 会议名称
搜索

作者:

Zhao, Wen-bing (Zhao, Wen-bing.) | Wang, Dan (Wang, Dan.) | Ding, Zhi-ming (Ding, Zhi-ming.) (学者:丁治明)

收录:

CPCI-S

摘要:

Aiming at the difficulties to prevent Web applications to be maliciously injected which are increased by all kinds of dynamic Web technologies applied, concentrate on XSS attack, this paper reviews the research progresses of Web application injection vulnerabilities detection in recent years. It summarizes the classification and causes of the XSS injection security vulnerabilities, analyzes the complexity of security vulnerabilities detection; then proposes the key technologies of the existing detection approached, including analyzing and identifying the injection points, injection detection by software analysis and testing, symbolic execution, taint analysis; finally presents its future development direction.

关键词:

Vulnerability Detection Web Application Style XSS Attack

作者机构:

  • [ 1 ] [Zhao, Wen-bing]Beijing Univ Technol, Coll Comp Sci, Beijing 100124, Peoples R China
  • [ 2 ] [Wang, Dan]Beijing Univ Technol, Coll Comp Sci, Beijing 100124, Peoples R China
  • [ 3 ] [Ding, Zhi-ming]Beijing Univ Technol, Coll Comp Sci, Beijing 100124, Peoples R China

通讯作者信息:

  • [Zhao, Wen-bing]Beijing Univ Technol, Coll Comp Sci, Beijing 100124, Peoples R China

电子邮件地址:

查看成果更多字段

相关关键词:

来源 :

PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON COMPUTER NETWORKS AND COMMUNICATION TECHNOLOGY (CNCT 2016)

ISSN: 2352-538X

年份: 2016

卷: 54

页码: 798-804

语种: 英文

被引次数:

WoS核心集被引频次: 0

SCOPUS被引频次:

ESI高被引论文在榜: 0 展开所有

万方被引频次:

中文被引频次:

近30日浏览量: 2

在线人数/总访问数:429/3699963
地址:北京工业大学图书馆(北京市朝阳区平乐园100号 邮编:100124) 联系我们:010-67392185
版权所有:北京工业大学图书馆 站点建设与维护:北京爱琴海乐之技术有限公司