-
5
-
-
34547343191
-
-
T. O. Foundation. Top ten most critical web application vulnerabilities, 2005. http://www.owasp.org/documentation/topten.html.
-
T. O. Foundation. Top ten most critical web application vulnerabilities, 2005. http://www.owasp.org/documentation/topten.html.
-
-
-
-
9
-
-
77952407110
-
AMNESIA: Analysis and Monitoring for NEutralizing SQL-Injection Attacks
-
Long Beach, CA, USA, Nov
-
W. G. Halfond and A. Orso. AMNESIA: Analysis and Monitoring for NEutralizing SQL-Injection Attacks. In Proc. of the IEEE and ACM Intl. Conference on Automated Software Engineering (ASE 2005), pages 174-183, Long Beach, CA, USA, Nov. 2005.
-
(2005)
Proc. of the IEEE and ACM Intl. Conference on Automated Software Engineering (ASE 2005)
, pp. 174-183
-
-
Halfond, W.G.1
Orso, A.2
-
11
-
-
0010729284
-
-
Microsoft Press, Redmond, Washington, Second Edition
-
M. Howard and D. LeBlanc. Writing Secure Code. Microsoft Press, Redmond, Washington, Second Edition, 2003.
-
(2003)
Writing Secure Code
-
-
Howard, M.1
LeBlanc, D.2
-
12
-
-
84880450431
-
Web Application Security Assessment by Fault Injection and Behavior Monitoring
-
May
-
Y. Huang, S. Huang, T. Lin, and C. Tsai. Web Application Security Assessment by Fault Injection and Behavior Monitoring. In Proc. of the 12th Intl. World Wide. Web Conference (WWW 03), pages 148-159, May 2003.
-
(2003)
Proc. of the 12th Intl. World Wide. Web Conference
, pp. 148-159
-
-
Huang, Y.1
Huang, S.2
Lin, T.3
Tsai, C.4
-
13
-
-
19944365247
-
Securing Web Application Code by Static Analysis and Runtime Protection
-
May
-
Y. Huang, F. Yu, C. Hang, C. H. Tsai, D. T. Lee, and S. Y. Kuo. Securing Web Application Code by Static Analysis and Runtime Protection. In Proc. of the 13th Intl. World Wide Web Conference (WWW 04), pages 40-52, May 2004.
-
(2004)
Proc. of the 13th Intl. World Wide Web Conference
, pp. 40-52
-
-
Huang, Y.1
Yu, F.2
Hang, C.3
Tsai, C.H.4
Lee, D.T.5
Kuo, S.Y.6
-
14
-
-
33751027156
-
-
N. Jovanovic, C. Kruegel, and E. Kirda. Pixy: A Static Analysis Tool for Detecting Web Application Vulnerabilities. In 2006 IEEE Symposium on Security and Privacy, May 2006.
-
N. Jovanovic, C. Kruegel, and E. Kirda. Pixy: A Static Analysis Tool for Detecting Web Application Vulnerabilities. In 2006 IEEE Symposium on Security and Privacy, May 2006.
-
-
-
-
16
-
-
33745635923
-
SQL Injection Signatures Evasion
-
Apr
-
O. Maor and A. Shulman. SQL Injection Signatures Evasion. White paper, Imperva, Apr. 2004. http://www.imperva.com/application.defense_center/ white_papers/sql_injection_signatures_evasion.html.
-
(2004)
White paper, Imperva
-
-
Maor, O.1
Shulman, A.2
-
20
-
-
84871349041
-
Automatically Hardening Web Applications Using Precise Tainting
-
May
-
A. Nguyen-Tuong, S. Guarnieri, D. Greene, J. Shirley, and D. Evans. Automatically Hardening Web Applications Using Precise Tainting. In Twentieth IFIP Intl. Information Security Conference (SEC 2005), May 2005.
-
(2005)
Twentieth IFIP Intl. Information Security Conference (SEC 2005)
-
-
Nguyen-Tuong, A.1
Guarnieri, S.2
Greene, D.3
Shirley, J.4
Evans, D.5
-
25
-
-
34247134594
-
A Learning-Based Approach to the Detection of SQL Attacks
-
Vienna, Austria, Jul
-
F. Valeur, D. Mutz, and G. Vigna. A Learning-Based Approach to the Detection of SQL Attacks. In Proc. of the Conference on Detection of Intrusions and Malware and Vulnerability Assessment (DIMVA), Vienna, Austria, Jul. 2005.
-
(2005)
Proc. of the Conference on Detection of Intrusions and Malware and Vulnerability Assessment (DIMVA)
-
-
Valeur, F.1
Mutz, D.2
Vigna, G.3
-
26
-
-
34547381464
-
-
G. Wassermann and Z. Su. An Analysis Framework for Security in Web Applications. In Proc. of the FSE Workshop on Specification and Verification of Component-Based Systems (SAVCBS 2004), pages 70-78, Oct. 2004.
-
G. Wassermann and Z. Su. An Analysis Framework for Security in Web Applications. In Proc. of the FSE Workshop on Specification and Verification of Component-Based Systems (SAVCBS 2004), pages 70-78, Oct. 2004.
-
-
-
|