CSSXC: Context-sensitive Sanitization Framework for Web Applications against XSS Vulnerabilities in Cloud Environments

dc.contributor.authorGupta, Shashank
dc.date.accessioned2024-11-05T12:16:04Z
dc.date.available2024-11-05T12:16:04Z
dc.date.issued2016
dc.description.abstractThis paper presents a context-sensitive sanitization based XSS defensive framework for the cloud environment. It discovers all the hidden injection points in HTML5-based web applications deployed on the platforms of cloud and sanitizes the XSS attack payloads injected in such points in a context sensitive manner. The identification of such injection points permits our technique to retrieve each possible web page of application, allowing a wider exploration and accelerating the process of applying the sanitizers on the untrusted variables of web application. The XSS attack mitigation capability of our framework was evaluated on web applications deployed for the cloud users in the cloud environment. The experimental results reveal that this technique detects the XSS attack payloads with minimum rate of false negatives and less runtime overhead.en_US
dc.identifier.urihttps://www.sciencedirect.com/science/article/pii/S1877050916305592
dc.identifier.urihttp://dspace.bits-pilani.ac.in:8080/jspui/handle/123456789/16305
dc.language.isoenen_US
dc.publisherElsevieren_US
dc.subjectComputer Scienceen_US
dc.subjectCloud Computingen_US
dc.subjectCross-Site Scripting (XSS) attacksen_US
dc.subjectJavaScript code injection attacksen_US
dc.subjectCloud securityen_US
dc.titleCSSXC: Context-sensitive Sanitization Framework for Web Applications against XSS Vulnerabilities in Cloud Environmentsen_US
dc.typeArticleen_US

Files

License bundle

Now showing 1 - 1 of 1
No Thumbnail Available
Name:
license.txt
Size:
1.71 KB
Format:
Item-specific license agreed upon to submission
Description: