An approach for cross-site scripting detection and removal based on genetic algorithms.
Software security vulnerabilities have led to many successful attacks on applications, on a daily basis. These attacks, including cross-site scripting, have caused damages for both web site owners and users. Cross-site scripting vulnerabilities are easy to exploit but difficult to eliminate. Many so...
Saved in:
Main Authors: | , , , |
---|---|
Format: | Conference or Workshop Item |
Language: | English |
Published: |
2014
|
Online Access: | http://psasir.upm.edu.my/id/eprint/32711/1/32711.pdf http://psasir.upm.edu.my/id/eprint/32711/ |
Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Institution: | Universiti Putra Malaysia |
Language: | English |
id |
my.upm.eprints.32711 |
---|---|
record_format |
eprints |
spelling |
my.upm.eprints.327112014-12-12T08:33:56Z http://psasir.upm.edu.my/id/eprint/32711/ An approach for cross-site scripting detection and removal based on genetic algorithms. Hydara, Isatou Md Sultan, Abu Bakar Zulzalil, Hazura Admodisastro, Novia Software security vulnerabilities have led to many successful attacks on applications, on a daily basis. These attacks, including cross-site scripting, have caused damages for both web site owners and users. Cross-site scripting vulnerabilities are easy to exploit but difficult to eliminate. Many solutions have been proposed for their detection. However, the problem of cross-site scripting vulnerabilities present in web applications still persists. In this paper, we propose to explore an approach based on genetic algorithms that will be able to detect and remove cross-site scripting vulnerabilities from the source code before an application is deployed. The proposed approach is, so far, only implemented and validated on Java-based Web applications, although it can be implemented in other programming languages with slight modifications. Initial evaluations have indicated promising results. 2014 Conference or Workshop Item NonPeerReviewed application/pdf en http://psasir.upm.edu.my/id/eprint/32711/1/32711.pdf Hydara, Isatou and Md Sultan, Abu Bakar and Zulzalil, Hazura and Admodisastro, Novia (2014) An approach for cross-site scripting detection and removal based on genetic algorithms. In: The Ninth International Conference on Software Engineering Advances - ICSEA 2014, 12-16 Oct. 2014, Nice, France. (pp. 227-232). |
institution |
Universiti Putra Malaysia |
building |
UPM Library |
collection |
Institutional Repository |
continent |
Asia |
country |
Malaysia |
content_provider |
Universiti Putra Malaysia |
content_source |
UPM Institutional Repository |
url_provider |
http://psasir.upm.edu.my/ |
language |
English |
description |
Software security vulnerabilities have led to many successful attacks on applications, on a daily basis. These attacks, including cross-site scripting, have caused damages for both web site owners and users. Cross-site scripting vulnerabilities are easy to exploit but difficult to eliminate. Many solutions have been proposed for their detection. However, the problem of cross-site scripting vulnerabilities present in web applications still persists. In this paper, we propose to explore an approach based on genetic algorithms that will be able to detect and remove cross-site scripting vulnerabilities from the source code before an application is deployed. The proposed approach is, so far, only implemented and validated on Java-based Web applications, although it can be implemented in other programming languages with slight modifications. Initial evaluations have indicated promising results. |
format |
Conference or Workshop Item |
author |
Hydara, Isatou Md Sultan, Abu Bakar Zulzalil, Hazura Admodisastro, Novia |
spellingShingle |
Hydara, Isatou Md Sultan, Abu Bakar Zulzalil, Hazura Admodisastro, Novia An approach for cross-site scripting detection and removal based on genetic algorithms. |
author_facet |
Hydara, Isatou Md Sultan, Abu Bakar Zulzalil, Hazura Admodisastro, Novia |
author_sort |
Hydara, Isatou |
title |
An approach for cross-site scripting detection and removal based on genetic algorithms. |
title_short |
An approach for cross-site scripting detection and removal based on genetic algorithms. |
title_full |
An approach for cross-site scripting detection and removal based on genetic algorithms. |
title_fullStr |
An approach for cross-site scripting detection and removal based on genetic algorithms. |
title_full_unstemmed |
An approach for cross-site scripting detection and removal based on genetic algorithms. |
title_sort |
approach for cross-site scripting detection and removal based on genetic algorithms. |
publishDate |
2014 |
url |
http://psasir.upm.edu.my/id/eprint/32711/1/32711.pdf http://psasir.upm.edu.my/id/eprint/32711/ |
_version_ |
1643830669297582080 |