-
1
-
-
85091901496
-
-
Bugzilla
-
Bugzilla. http://www.bugzilla,org/.
-
-
-
-
2
-
-
85091956307
-
-
HotCRP
-
HotCRP. http://www.cs.ucla.edu/.kohler/hotcrp/index.html/.
-
-
-
-
3
-
-
78649299251
-
-
OWASP: Top 10 2007. http://www.owasp.org/index.php/ Top_10_2007.
-
OWASP: Top 10 2007
-
-
-
5
-
-
49949119476
-
Xss-guard: Precise dynamic prevention of cross-site scripting attacks
-
Berlin, Heidelberg, Springer-Verlag
-
P. Bisht and V. N. Venkatakrishnan. Xss-guard: Precise dynamic prevention of cross-site scripting attacks. In Proceedings of the 5th international conference on Detection of Intrusions and Malware, and Vulnerability Assessment, DIMVA'08, pages 23-43, Berlin, Heidelberg, 2008. Springer-Verlag.
-
(2008)
Proceedings of the 5th international conference on Detection of Intrusions and Malware, and Vulnerability Assessment, DIMVA'08
, pp. 23-43
-
-
Bisht, P.1
Venkatakrishnan, V. N.2
-
7
-
-
19944365247
-
Securing web application code by static analysis and runtime protection
-
New York, NY, USA, ACM
-
Y.-W. Huang, F. Yu, C. Hang, C.-H. Tsai, D.-T. Lee, and S.-Y. Kuo. Securing web application code by static analysis and runtime protection. In Proceedings of the 13th international conference on World Wide Web, WWW '04, pages 40-52, New York, NY, USA, 2004. ACM.
-
(2004)
Proceedings of the 13th international conference on World Wide Web, WWW '04
, pp. 40-52
-
-
Huang, Y.-W.1
Yu, F.2
Hang, C.3
Tsai, C.-H.4
Lee, D.-T.5
Kuo, S.-Y.6
-
12
-
-
77955186827
-
ConScript: Specifying and enforcing fine-grained security policies for JavaScript in the browser
-
May
-
L. Meyerovich and B. Livshits. ConScript: Specifying and enforcing fine-grained security policies for JavaScript in the browser. In IEEE Symposium on Security and Privacy, May 2010.
-
(2010)
IEEE Symposium on Security and Privacy
-
-
Meyerovich, L.1
Livshits, B.2
-
14
-
-
77955220343
-
A symbolic execution framework for javascript
-
Washington, DC, USA, IEEE Computer Society
-
P. Saxena, D. Akhawe, S. Hanna, F. Mao, S. McCamant, and D. Song. A symbolic execution framework for javascript. In Proceedings of the 2010 IEEE Symposium on Security and Privacy, SP'10, pages 513-528, Washington, DC, USA, 2010. IEEE Computer Society.
-
(2010)
Proceedings of the 2010 IEEE Symposium on Security and Privacy, SP'10
, pp. 513-528
-
-
Saxena, P.1
Akhawe, D.2
Hanna, S.3
Mao, F.4
McCamant, S.5
Song, D.6
-
15
-
-
80051946867
-
FLAX: Systematic discovery of client-side validation vulnerabilities in rich web applications
-
P. Saxena, S. Hanna, P. Poosankam, and D. Song. FLAX: Systematic discovery of client-side validation vulnerabilities in rich web applications. In Network & Distributed System Security Symposium, (NDSS), 2010.
-
(2010)
Network & Distributed System Security Symposium, (NDSS)
-
-
Saxena, P.1
Hanna, S.2
Poosankam, P.3
Song, D.4
-
18
-
-
77954584716
-
Reining in the web with content security policy
-
New York, NY, USA, ACM
-
S. Stamm, B. Sterne, and G. Markham. Reining in the web with content security policy. In Proceedings of the 19th international conference on World wide web, WWW'10, pages 921-930, New York, NY, USA, 2010. ACM.
-
(2010)
Proceedings of the 19th international conference on World wide web, WWW'10
, pp. 921-930
-
-
Stamm, S.1
Sterne, B.2
Markham, G.3
-
20
-
-
85091904636
-
-
Template Toolkit
-
Template Toolkit. http://template-toolkit.org.
-
-
-
-
22
-
-
85091929691
-
-
TNW: The Next Web. YouTube hacked, Justin Bieber videos targeted
-
TNW: The Next Web. YouTube hacked, Justin Bieber videos targeted. http://thenextweb.com/socialmedia/2010/07/04/youtube-hacked-justin-bieber-videos-targeted/.
-
-
-
-
23
-
-
35449004893
-
Sound and precise analysis of web applications for injection vulnerabilities
-
New York, NY, USA, ACM
-
G. Wassermann and Z. Su. Sound and precise analysis of web applications for injection vulnerabilities. In Proceedings of the ACM SIGPLAN conference on Programming language design and implementation, pages 32-41, New York, NY, USA, 2007. ACM.
-
(2007)
Proceedings of the ACM SIGPLAN conference on Programming language design and implementation
, pp. 32-41
-
-
Wassermann, G.1
Su, Z.2
-
24
-
-
57449103850
-
Dynamic test input generation for web applications
-
G. Wassermann, D. Yu, A. Chander, D. Dhurjati, H. Inamura, and Z. Su. Dynamic test input generation for web applications. In Proceedings of the International symposium on Software testing and analysis, 2008.
-
(2008)
Proceedings of the International symposium on Software testing and analysis
-
-
Wassermann, G.1
Yu, D.2
Chander, A.3
Dhurjati, D.4
Inamura, H.5
Su, Z.6
-
25
-
-
80053073233
-
A systematic analysis of xss sanitization in web application frameworks
-
J. Weinberger, P. Saxena, D. Akhawe, M. Finifter, R. Shin, and D. Song. A systematic analysis of xss sanitization in web application frameworks. In Proceedings of 16th European Symposium on Research in Computer Security (ESORICS), 2011.
-
(2011)
Proceedings of 16th European Symposium on Research in Computer Security (ESORICS)
-
-
Weinberger, J.1
Saxena, P.2
Akhawe, D.3
Finifter, M.4
Shin, R.5
Song, D.6
-
28
-
-
85038810709
-
Taint-enhanced policy enforcement: A practical approach to defeat a wide range of attacks
-
W. Xu, S. Bhatkar, and R. Sekar. Taint-enhanced policy enforcement: A practical approach to defeat a wide range of attacks. In Proceedings of the 15th USENIX Security Symposium, pages 121-136, 2006.
-
(2006)
Proceedings of the 15th USENIX Security Symposium
, pp. 121-136
-
-
Xu, W.1
Bhatkar, S.2
Sekar, R.3
|