Hybrid method on clickjacking detection and prevention in modern advertisements

In modern advertisements, clickjacking attacks can be delivered through a vulnerability in web application. To overcome this, web application security is required that will prevent malvertisement. In this study, prevention of clickjacking in the modern web advertisements are implemented. Vulnerabili...

Full description

Saved in:
Bibliographic Details
Main Authors: Dhurandhar, Kirit Shashank, Md. Siraj, Maheyzah
Format: Article
Language:English
Published: Penerbit UTM Press 2019
Subjects:
Online Access:http://eprints.utm.my/id/eprint/85238/1/MaheyzahMdSiraj2019_HybridMethodonClickjackingDetection.pdf
http://eprints.utm.my/id/eprint/85238/
https://dx.doi.org/10.11113/ijic.v9n2.231
Tags: Add Tag
No Tags, Be the first to tag this record!
Institution: Universiti Teknologi Malaysia
Language: English
Description
Summary:In modern advertisements, clickjacking attacks can be delivered through a vulnerability in web application. To overcome this, web application security is required that will prevent malvertisement. In this study, prevention of clickjacking in the modern web advertisements are implemented. Vulnerability checks on the potentially malicious website were conducted. Implementation of hybrid prevention method of clickjacking into new developed website were carried out. Among top 500 websites, 50 websites were chosen as a dataset in this study out of which 4 case studies were selected. Website with server privileges were required to implement the hybrid prevention method, consisting opacity, Z-Index and X-Frame option policy. A new website was developed to satisfy the requirements for the method implementation. The results show, among 50 selected websites, about 19 websites were vulnerable to clickjacking. When the hybrid prevention method were implemented in the developed website, it increases the security by mitigating the vulnerability of web application to clickjacking attack.