메뉴 건너뛰기




Volumn 5673 LNCS, Issue , 2009, Pages 256-272

Abstract parsing: Static analysis of dynamically generated string output using LR-parsing technology

Author keywords

[No Author keywords available]

Indexed keywords

CONTEXT-FREE; CONTEXT-FREE STRUCTURES; CONTROL STRUCTURE; DOCUMENT LANGUAGES; HTML DOCUMENTS; PARSING TECHNOLOGIES; REFERENCE GRAMMAR;

EID: 70350343346     PISSN: 03029743     EISSN: 16113349     Source Type: Book Series    
DOI: 10.1007/978-3-642-03237-0_18     Document Type: Conference Paper
Times cited : (20)

References (22)
  • 1
    • 0033350214 scopus 로고    scopus 로고
    • Simultaneous demand-driven data-flow and call graph analysis
    • Oxford
    • Agrawal, G.: Simultaneous demand-driven data-flow and call graph analysis. In: Proc. Int'l. Conf. Software Maintenance, Oxford (1999)
    • (1999) Proc. Int'l. Conf. Software Maintenance
    • Agrawal, G.1
  • 2
    • 84878176186 scopus 로고    scopus 로고
    • Principles of
    • Compiler, Reading 1977
    • Aho, A., Ullman, J.: Principles of Compiler Design. Addison-Wesley, Reading (1977)
    • Aho, A.1    Ullman, J.2
  • 4
    • 33845934486 scopus 로고    scopus 로고
    • Choi, T.-H., Lee, O., Kim, H., Doh, K.-G.: A practical string analyzer by the widening approach. In: Kobayashi, N. (ed.) APLAS 2006. LNCS, 4279, pp. 374-388. Springer, Heidelberg (2006)
    • Choi, T.-H., Lee, O., Kim, H., Doh, K.-G.: A practical string analyzer by the widening approach. In: Kobayashi, N. (ed.) APLAS 2006. LNCS, vol. 4279, pp. 374-388. Springer, Heidelberg (2006)
  • 7
    • 0031269332 scopus 로고    scopus 로고
    • A practical framework for demand-driven interprocedural data flow analysis
    • Duesterwald, E., Gupta, R., Soffa, M.L.: A practical framework for demand-driven interprocedural data flow analysis. ACM TOPLAS 19, 992-1030 (1997)
    • (1997) ACM TOPLAS , vol.19 , pp. 992-1030
    • Duesterwald, E.1    Gupta, R.2    Soffa, M.L.3
  • 9
    • 70350300971 scopus 로고    scopus 로고
    • XDuce: A typed XML processing language
    • Technical Report
    • Hosoya, H.: XDuce: A typed XML processing language. Technical Report (2008), http://xduce.sourceforge.net/
    • (2008)
    • Hosoya, H.1
  • 10
  • 11
    • 84976835106 scopus 로고
    • Data flow analysis of applicative programs using minimal function graphs
    • ACM Press, New York
    • Jones, N.D., Mycroft, A.: Data flow analysis of applicative programs using minimal function graphs. In: Proc. 13th Symp. POPL, pp. 296-306. ACM Press, New York (1986)
    • (1986) Proc. 13th Symp. POPL , pp. 296-306
    • Jones, N.D.1    Mycroft, A.2
  • 13
    • 33749864932 scopus 로고    scopus 로고
    • Kirkegaard, C., Møller, A.: Static analysis for Java Servlets and JSP. In: Yi, K. (ed.) SAS 2006. LNCS, 4134, pp. 336-352. Springer, Heidelberg (2006)
    • Kirkegaard, C., Møller, A.: Static analysis for Java Servlets and JSP. In: Yi, K. (ed.) SAS 2006. LNCS, vol. 4134, pp. 336-352. Springer, Heidelberg (2006)
  • 15
    • 33845929556 scopus 로고    scopus 로고
    • Minimide, Y., Tozawa, A.: XML validation for context-free grammars. In: Kobayashi, N. (ed.) APLAS 2006. LNCS, 4279, pp. 357-373. Springer, Heidelberg (2006)
    • Minimide, Y., Tozawa, A.: XML validation for context-free grammars. In: Kobayashi, N. (ed.) APLAS 2006. LNCS, vol. 4279, pp. 357-373. Springer, Heidelberg (2006)
  • 17
    • 50249188346 scopus 로고    scopus 로고
    • Nishiyama, T., Minimide, Y.: A translation from the HTML DTD into a regular hedge grammar. In: Ibarra, O.H., Ravikumar, B. (eds.) CIAA 2008. LNCS, 5148, pp. 122-131. Springer, Heidelberg (2008)
    • Nishiyama, T., Minimide, Y.: A translation from the HTML DTD into a regular hedge grammar. In: Ibarra, O.H., Ravikumar, B. (eds.) CIAA 2008. LNCS, vol. 5148, pp. 122-131. Springer, Heidelberg (2008)
  • 20
    • 33745811685 scopus 로고    scopus 로고
    • The essence of command injection attacks in web applications
    • Wassermann, G., Su, Z.: The essence of command injection attacks in web applications. In: Proc. 33d ACM POPL, pp. 372-382 (2006)
    • (2006) Proc. 33d ACM POPL , pp. 372-382
    • Wassermann, G.1    Su, Z.2
  • 21
    • 35449004893 scopus 로고    scopus 로고
    • Sound and precise analysis of web applications for injection vulnerabilities
    • Wassermann, G., Su, Z.: Sound and precise analysis of web applications for injection vulnerabilities. In: Proc. ACM PLDI, pp. 32-41 (2007)
    • (2007) Proc. ACM PLDI , pp. 32-41
    • Wassermann, G.1    Su, Z.2
  • 22
    • 84910681237 scopus 로고    scopus 로고
    • Static detection of security vulnerabilities in scripting languages
    • Xie, Y., Aiken, A.: Static detection of security vulnerabilities in scripting languages. In: Proc. 15th USENIX Security Symp. (2006)
    • (2006) Proc. 15th USENIX Security Symp
    • Xie, Y.1    Aiken, A.2


* 이 정보는 Elsevier사의 SCOPUS DB에서 KISTI가 분석하여 추출한 것입니다.