DSpace Repository

XSS-secure as a service for the platforms of online social network-based multimedia web applications in cloud

Show simple item record

dc.contributor.author Gupta, Shashank
dc.date.accessioned 2024-11-05T12:13:44Z
dc.date.available 2024-11-05T12:13:44Z
dc.date.issued 2016-07
dc.identifier.uri https://link.springer.com/article/10.1007/s11042-016-3735-1
dc.identifier.uri http://dspace.bits-pilani.ac.in:8080/jspui/handle/123456789/16304
dc.description.abstract This article presents a novel framework XSS-Secure, which detects and alleviates the propagation of Cross-Site Scripting (XSS) worms from the Online Social Network (OSN)-based multimedia web applications on the cloud environment. It operates in two modes: training and detection mode. The former mode sanitizes the extracted untrusted variables of JavaScript code in a context-aware manner. This mode stores such sanitized code in sanitizer snapshot repository and OSN web server for further instrumentation in the detection mode. The detection mode compares the sanitized HTTP response (HRES) generated at the OSN web server with the sanitized response stored at the sanitizer snapshot repository. Any variation observed in this HRES message will indicate the injection of XSS worms from the remote OSN servers. XSS-Secure determines the context of such worms, perform the context-aware sanitization on them and finally sanitized HRES is transmitted to the OSN user. The prototype of our framework was developed in Java and integrated its components on the virtual machines of cloud environment. The detection and alleviation capability of our cloud-based framework was tested on the platforms of real world multimedia-based web applications including the OSN-based Web applications. Experimental outcomes reveal that our framework is capable enough to mitigate the dissemination of XSS worm from the platforms of non-OSN Web applications as well as OSN web sites with acceptable false negative and false positive rate. en_US
dc.language.iso en en_US
dc.publisher Springer en_US
dc.subject Computer Science en_US
dc.subject Online Social Network (OSN) en_US
dc.subject Web applications en_US
dc.subject HTTP response en_US
dc.title XSS-secure as a service for the platforms of online social network-based multimedia web applications in cloud en_US
dc.type Article en_US


Files in this item

Files Size Format View

There are no files associated with this item.

This item appears in the following Collection(s)

Show simple item record

Search DSpace


Advanced Search

Browse

My Account