Passer à la navigation principale Passer à la recherche Passer au contenu principal

Towards revealing JavaScript program intents using abstract interpretation

  • Nara Institute of Science and Technology

Résultats de recherche: Le chapitre dans un livre, un rapport, une anthologie ou une collectionContribution à une conférenceRevue par des pairs

Résumé

Everyday, millions of Internet users access AJAX-powered web applications. However, such richness is prone to security issues. In particular, Web 2.0 attacks are difficult to detect and block since it is similar to legitimate traffic. As a ground for our research, we review past related works and explain what might be missing to tackle Web 2.0 security issues. Especially, we show that tackling AJAX-based attacks often lacks a context that can only be conveyed during real-time analysis. In our research, we advocate the usage of abstract interpretation of JavaScript code to provide maximum coverage and to ensure completeness. Besides, we introduce a proxy-based proposal to provide analysis of JavaScript malware.

langue originaleAnglais
titreAsian Internet Engineering Conference, AINTEC 2010
Pages87-94
Nombre de pages8
Les DOIs
étatPublié - 1 déc. 2010
Modification externeOui
Evénement6th Asian Internet Engineering Conference, AINTEC 2010 - Bangkok, Thadlande
Durée: 15 nov. 201017 nov. 2010

Série de publications

NomAsian Internet Engineering Conference, AINTEC 2010

Une conférence

Une conférence6th Asian Internet Engineering Conference, AINTEC 2010
Pays/TerritoireThadlande
La villeBangkok
période15/11/1017/11/10

Empreinte digitale

Examiner les sujets de recherche de « Towards revealing JavaScript program intents using abstract interpretation ». Ensemble, ils forment une empreinte digitale unique.

Contient cette citation