DSpace Repository

RAJIVE: restricting the abuse of JavaScript injection vulnerabilities on cloud data centre by sensing the violation in expected workflow of web applications

Show simple item record

dc.contributor.author Gupta, Shashank
dc.date.accessioned 2024-10-30T09:46:46Z
dc.date.available 2024-10-30T09:46:46Z
dc.date.issued 2018-03
dc.identifier.uri https://www.inderscienceonline.com/doi/abs/10.1504/IJICA.2018.090822
dc.identifier.uri http://dspace.bits-pilani.ac.in:8080/jspui/handle/123456789/16288
dc.description.abstract This article introduces a novel defensive framework that detects and obstructs the exploitation of malicious JavaScript (JS) injection by spotting the violation in the expected workflow of web applications deployed on the cloud data centres. The framework initially generates some categories of axioms by examining the strings of HTTP request and response. Likewise, it detects the deviation in the intended workflow of web application by examining the violation in such generated axioms. The prototype of our work was developed in Java development framework and installed on the virtual machines of cloud data centres located at the core of network. Susceptible web applications were utilised for evaluating the workflow violation detection capability in order to obstruct the execution of XSS worms on the cloud data centres. Evaluation result revealed that framework detects the injection of XSS worms with high precision rate and lesser rate of false positives and false negatives. en_US
dc.language.iso en en_US
dc.publisher Inder Science en_US
dc.subject Computer Science en_US
dc.subject Cloud security en_US
dc.subject XSS attack en_US
dc.subject JavaScript worms en_US
dc.subject AJAX en_US
dc.subject Java Script en_US
dc.title RAJIVE: restricting the abuse of JavaScript injection vulnerabilities on cloud data centre by sensing the violation in expected workflow of web applications en_US
dc.type Article en_US


Files in this item

Files Size Format View

There are no files associated with this item.

This item appears in the following Collection(s)

Show simple item record

Search DSpace


Advanced Search

Browse

My Account