DSpace Repository

CSSXC: Context-sensitive Sanitization Framework for Web Applications against XSS Vulnerabilities in Cloud Environments

Show simple item record

dc.contributor.author Gupta, Shashank
dc.date.accessioned 2024-11-05T12:16:04Z
dc.date.available 2024-11-05T12:16:04Z
dc.date.issued 2016
dc.identifier.uri https://www.sciencedirect.com/science/article/pii/S1877050916305592
dc.identifier.uri http://dspace.bits-pilani.ac.in:8080/jspui/handle/123456789/16305
dc.description.abstract This paper presents a context-sensitive sanitization based XSS defensive framework for the cloud environment. It discovers all the hidden injection points in HTML5-based web applications deployed on the platforms of cloud and sanitizes the XSS attack payloads injected in such points in a context sensitive manner. The identification of such injection points permits our technique to retrieve each possible web page of application, allowing a wider exploration and accelerating the process of applying the sanitizers on the untrusted variables of web application. The XSS attack mitigation capability of our framework was evaluated on web applications deployed for the cloud users in the cloud environment. The experimental results reveal that this technique detects the XSS attack payloads with minimum rate of false negatives and less runtime overhead. en_US
dc.language.iso en en_US
dc.publisher Elsevier en_US
dc.subject Computer Science en_US
dc.subject Cloud Computing en_US
dc.subject Cross-Site Scripting (XSS) attacks en_US
dc.subject JavaScript code injection attacks en_US
dc.subject Cloud security en_US
dc.title CSSXC: Context-sensitive Sanitization Framework for Web Applications against XSS Vulnerabilities in Cloud Environments en_US
dc.type Article en_US


Files in this item

Files Size Format View

There are no files associated with this item.

This item appears in the following Collection(s)

Show simple item record

Search DSpace


Advanced Search

Browse

My Account