2018
DOI: 10.30958/ajs.5-3-4
|View full text |Cite
|
Sign up to set email alerts
|

An Approach for the Automated Detection of XSS Vulnerabilities in Web Templates

Abstract: Web sites are exposed to various threats such as injections or denial of service attacks. Hence, the protection of the web site and the underlying system components is of major importance in order to deploy a reliable and secure web application. The task of securing a web application is quite complex. It requires the hardening of the system components and installation of security patches on a regular basis. Furthermore, the web application should be checked against vulnerabilities by using penetration testing … Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2

Citation Types

0
3
0

Year Published

2020
2020
2020
2020

Publication Types

Select...
2
1

Relationship

0
3

Authors

Journals

citations
Cited by 3 publications
(3 citation statements)
references
References 8 publications
0
3
0
Order By: Relevance
“…Each security gap leads to expensive consequences and if it takes a long time to less trust in new technologies. To avoid this risk, the templates from the Preprocessing App were tested with the methods of Stigler et al (2018) to detect cross site scripting vulnerabilities in websites. All implemented templates are now guarded against cross site scripting attacks.…”
Section: The Preprocessing Appmentioning
confidence: 99%
See 1 more Smart Citation
“…Each security gap leads to expensive consequences and if it takes a long time to less trust in new technologies. To avoid this risk, the templates from the Preprocessing App were tested with the methods of Stigler et al (2018) to detect cross site scripting vulnerabilities in websites. All implemented templates are now guarded against cross site scripting attacks.…”
Section: The Preprocessing Appmentioning
confidence: 99%
“…Figure 6 shows the web template to create new projects over the admin panel from the web application. All input fields are checked for cross site scripting vulnerabilities with the tests from Stigler et al (2018). The report shows that the Preprocessing App is protected against the most common security flaws.…”
Section: The Preprocessing Appmentioning
confidence: 99%
“…They achieved 95% accuracy and 0.99% false-positive rate with their tool called CrawlerXSS.Jia-dong Liu and Yu-yi Ou[17] studied security software and analyzed web filtering rules. By using this analysis, proposed a method to detect XSS attacks based on vectors.Stigler, Karzhaubekova and Karg[18] proposed a method to detect XSS vulnerabilities in Web templates automatically. They parsed every template into internal representation (IR) and performed an XSS test on these IR, and generated unit tests based on parts of IR.…”
mentioning
confidence: 99%