Defense Against HTML5 XSS Attack Vectors: A Nested Context-Aware Sanitization Technique

dc.contributor.authorGupta, Shashank
dc.date.accessioned2024-10-30T09:21:01Z
dc.date.available2024-10-30T09:21:01Z
dc.date.issued2018
dc.description.abstractThe authors suggested an offline and online based model based on nested context aware sanitization method for detection and alleviation of malicious XSS attack vectors for OSN's. The offline mode extracts JS from webpage, calculates features and stores them in the depository for additional usage. The online approach embodies URI link extraction and feature estimation thus detecting anomaly on comparison with offline modes feature repository. The authors have developed their prototype in J avaScript and its infrastructure settings are implemented as an extension on infrastructure settings of browser. Our proposed design is implemented and tested on five OSN platforms vulnerable to XSS. The results estimated have the competency to identify the XSS worms with acceptable little false positives in comparison to recent state of art. The outcome of our design draws upon nested context of JS for efficacious sanitizationen_US
dc.identifier.urihttps://ieeexplore.ieee.org/abstract/document/8442855
dc.identifier.urihttps://dspace.bits-pilani.ac.in/handle/123456789/16285
dc.language.isoenen_US
dc.publisherIEEEen_US
dc.subjectComputer Scienceen_US
dc.subjectOnline Social Networken_US
dc.subjectJava Scripten_US
dc.subjectCross Site Scriptingen_US
dc.subjectSQL injectionen_US
dc.subjectCross-site scriptingen_US
dc.titleDefense Against HTML5 XSS Attack Vectors: A Nested Context-Aware Sanitization Techniqueen_US
dc.typeArticleen_US

Files

License bundle

Now showing 1 - 1 of 1
No Thumbnail Available
Name:
license.txt
Size:
1.71 KB
Format:
Item-specific license agreed upon to submission
Description: