咨询与建议

限定检索结果

文献类型

  • 1 篇 期刊文献
  • 1 篇 会议

馆藏范围

  • 2 篇 电子文献
  • 0 种 纸本馆藏

日期分布

学科分类号

  • 2 篇 工学
    • 1 篇 电气工程
    • 1 篇 电子科学与技术(可...
    • 1 篇 信息与通信工程
    • 1 篇 计算机科学与技术...

主题

  • 2 篇 html sanitizatio...
  • 1 篇 parsing differen...
  • 1 篇 mxss
  • 1 篇 web security
  • 1 篇 taint inference
  • 1 篇 bioinformatics
  • 1 篇 xss
  • 1 篇 url rewriting
  • 1 篇 cross-site scrip...

机构

  • 1 篇 tech univ carolo...
  • 1 篇 natl univ def te...

作者

  • 1 篇 mao xiaoguang
  • 1 篇 li weishi
  • 1 篇 johns martin
  • 1 篇 klein david
  • 1 篇 pan jinkun

语言

  • 2 篇 英文
检索条件"主题词=HTML sanitization"
2 条 记 录,以下是1-10 订阅
排序:
Taint Inference for Cross-Site Scripting in Context of URL Rewriting and html sanitization
收藏 引用
ETRI JOURNAL 2016年 第2期38卷 376-386页
作者: Pan, Jinkun Mao, Xiaoguang Li, Weishi Natl Univ Def Technol Coll Comp Changsha Hunan Peoples R China
Currently, web applications are gaining in prevalence. In a web application, an input may not be appropriately validated, making the web application susceptible to cross site scripting (XSS), which poses serious secur... 详细信息
来源: 评论
Parse Me, Baby, One More Time: Bypassing html Sanitizer via Parsing Differentials  45
Parse Me, Baby, One More Time: Bypassing HTML Sanitizer via ...
收藏 引用
45th IEEE Symposium on Security and Privacy (SP)
作者: Klein, David Johns, Martin Tech Univ Carolo Wilhelmina Braunschweig Braunschweig Germany
Websites rely on server-side html sanitization to defend against the ever-present threat of cross-site scripting attacks. Parsing arbitrary pieces of markup to assess whether they contain an exploit payload is far fro... 详细信息
来源: 评论