메뉴 건너뛰기




Volumn 5628 LNCS, Issue , 2009, Pages 238-255

Defeating cross-site request forgery attacks with browser-enforced authenticity protection

Author keywords

Browser security; Cross site request forgery; Web security

Indexed keywords

AUTHENTICATION TOKEN; BROWSER SECURITY; CROSS-SITE REQUEST FORGERY; FIREFOX; FORGERY ATTACKS; REAL-WORLD; WEB APPLICATION; WEB SECURITY; WEB-PAGE;

EID: 70350356658     PISSN: 03029743     EISSN: 16113349     Source Type: Book Series    
DOI: 10.1007/978-3-642-03549-4_15     Document Type: Conference Paper
Times cited : (41)

References (25)
  • 1
    • 70350401491 scopus 로고    scopus 로고
    • The platform for privacy preferences project p3p
    • The platform for privacy preferences project (p3p), http://www.w3.org/TR/ P3P
  • 11
    • 70350355989 scopus 로고    scopus 로고
    • Jovanvoic, N., Kirda, E., Kruegel, C.: Preventing cross site request forgery attacks. In: Proceedings of the Second IEEE Conference on Security and Privacy in Communication Networks (September 2006)
    • Jovanvoic, N., Kirda, E., Kruegel, C.: Preventing cross site request forgery attacks. In: Proceedings of the Second IEEE Conference on Security and Privacy in Communication Networks (September 2006)
  • 14
    • 70350355991 scopus 로고    scopus 로고
    • MSDN
    • MSDN. Privacy in internet explorer 6, http://msdn.microsoft.com/en-us/ library/ms537343VS.85.aspx
    • Privacy in internet explorer , vol.6
  • 16
    • 70350355990 scopus 로고    scopus 로고
    • Top ten most critical web application security vulnerabilties
    • OWASP
    • OWASP. Top ten most critical web application security vulnerabilties. Whitepaper (2007), http://www.owasp.org/index.php/Top-10-2007
    • (2007) Whitepaper
  • 22
    • 70350421211 scopus 로고    scopus 로고
    • US-CERT. Google gmail cross-site request forgery vulnerability. Vulnerability Note 571584 (October 2007), http://www.kb.cert.org/vuls/id/571584
    • US-CERT. Google gmail cross-site request forgery vulnerability. Vulnerability Note 571584 (October 2007), http://www.kb.cert.org/vuls/id/571584
  • 24
    • 70350403244 scopus 로고    scopus 로고
    • US-CERT. Cross-site request forgery (CSRF) vulnerability in the Linksys wrt54gl wireless-g broadband router. CVE-2008-0228 (January 2008), http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-0228
    • US-CERT. Cross-site request forgery (CSRF) vulnerability in the Linksys wrt54gl wireless-g broadband router. CVE-2008-0228 (January 2008), http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-0228
  • 25
    • 70350368824 scopus 로고    scopus 로고
    • P. W. Cross-site request forgery (2001), http://www.tux.org/~peterw/csrf. txt
    • P. W. Cross-site request forgery (2001), http://www.tux.org/~peterw/csrf. txt


* 이 정보는 Elsevier사의 SCOPUS DB에서 KISTI가 분석하여 추출한 것입니다.