메뉴 건너뛰기




Volumn , Issue , 2011, Pages 575-586

WAPTEC: Whitebox analysis of web applications for parameter tampering exploit construction

Author keywords

Constraint solving; Exploit construction; Parameter tampering; Program analysis

Indexed keywords

CONSTRAINT SOLVING; EXPLOIT CONSTRUCTION; OPEN SOURCE APPLICATION; PARAMETER TAMPERING; PROGRAM ANALYSIS; WEB APPLICATION;

EID: 80755187789     PISSN: 15437221     EISSN: None     Source Type: Conference Proceeding    
DOI: 10.1145/2046707.2046774     Document Type: Conference Paper
Times cited : (64)

References (25)
  • 1
    • 79957964560 scopus 로고    scopus 로고
    • Google Web Toolkit. http://www.google.com/webtoolkit/.
    • Web Toolkit
  • 2
    • 80755159900 scopus 로고    scopus 로고
    • Ruby on Rails. http://www.rubyonrails.org/.
  • 8
    • 41149124878 scopus 로고    scopus 로고
    • Secure web application via automatic partitioning
    • DOI 10.1145/1294261.1294265, SOSP'07: Proceedings of the 21st ACM Symposium on Operating Systems Principles
    • CHONG, S., LIU, J., MYERS, A. C., QI, X., VIKRAM, K., ZHENG, L., AND ZHENG, X. Secure Web Application via Automatic Partitioning. SIGOPS Oper. Syst. Rev. 41, 6 (2007), 31-44. (Pubitemid 351429368)
    • (2007) Operating Systems Review (ACM) , pp. 31-44
    • Chong, S.1    Liu, J.2    Myers, A.C.3    Qi, X.4    Vikram, K.5    Zheng, L.6    Zheng, X.7
  • 13
    • 84894088425 scopus 로고    scopus 로고
    • Toward automated detection of logic vulnerabilities in web applications
    • Washington, DC, USA
    • FELMETSGER, V., CAVEDON, L., KRUEGEL, C., AND VIGNA, G. Toward Automated Detection of Logic Vulnerabilities in Web Applications. In 19th USENIX Security Symposium (Washington, DC, USA, 2010).
    • (2010) 19th USENIX Security Symposium
    • Felmetsger, V.1    Cavedon, L.2    Kruegel, C.3    Vigna, G.4
  • 14
    • 31844450371 scopus 로고    scopus 로고
    • DART: Directed automated random testing
    • GODEFROID, P., KLARLUND, N., AND SEN, K. DART: Directed Automated Random Testing. SIGPLAN Not. 40, 6 (2005), 213-223.
    • (2005) SIGPLAN Not. , vol.40 , Issue.6 , pp. 213-223
    • Godefroid, P.1    Klarlund, N.2    Sen, K.3
  • 20
    • 0016971687 scopus 로고
    • Symbolic execution and program testing
    • KING, J. C. Symbolic execution and program testing. Commun. ACM 19, 7 (1976).
    • (1976) Commun. ACM , vol.19 , pp. 7
    • King, J.C.1
  • 25
    • 84894034704 scopus 로고    scopus 로고
    • AutoISES: Automatically inferring security specifications and detecting violations
    • San Jose CA USA
    • TAN, L., ZHANG, X., MA, X., XIONG, W., AND ZHOU, Y. AutoISES: Automatically Inferring Security Specifications and Detecting Violations. In 17th USENIX Security Symposium (San Jose, CA, USA, 2008).
    • (2008) 17th USENIX Security Symposium
    • Tan, L.1    Zhang, X.2    Ma, X.3    Xiong, W.4    Zhou, Y.5


* 이 정보는 Elsevier사의 SCOPUS DB에서 KISTI가 분석하여 추출한 것입니다.