-
1
-
-
77955423741
-
Finding Bugs in Web Applications Using Dynamic Test Generation and Explicit-State Model Checking
-
S. Artzi, A. Kiezun, J. Dolby, F. Tip, D. Dig, A. Paradkar, and M. D. Ernst. Finding Bugs in Web Applications Using Dynamic Test Generation and Explicit-State Model Checking. IEEE Trans. Softw. Eng., 36(4), 2010.
-
(2010)
IEEE Trans. Softw. Eng
, vol.36
, Issue.4
-
-
Artzi, S.1
Kiezun, A.2
Dolby, J.3
Tip, F.4
Dig, D.5
Paradkar, A.6
Ernst, M. D.7
-
2
-
-
50249115131
-
Saner: Composing Static and Dynamic Analysis to Validate Sanitization in Web Applications
-
D. Balzarotti, M. Cova, V. Felmetsger, N. Jovanovic, E. Kirda, C. Kruegel, and G. Vigna. Saner: Composing Static and Dynamic Analysis to Validate Sanitization in Web Applications. In IEEE Symposium on Security and Privacy, 2008.
-
(2008)
IEEE Symposium on Security and Privacy
-
-
Balzarotti, D.1
Cova, M.2
Felmetsger, V.3
Jovanovic, N.4
Kirda, E.5
Kruegel, C.6
Vigna, G.7
-
6
-
-
84981346714
-
Using Static Program Analysis to Aid Intrusion Detection
-
M. Egele, M. Szydlowski, E. Kirda, and C. Kruegel. Using Static Program Analysis to Aid Intrusion Detection. In Detection of Intrusions and Malware, and Vulnerability Assessment (DIMVA), 2006.
-
(2006)
Detection of Intrusions and Malware, and Vulnerability Assessment (DIMVA)
-
-
Egele, M.1
Szydlowski, M.2
Kirda, E.3
Kruegel, C.4
-
9
-
-
85180623723
-
-
T. P. Group. as of July 2013
-
T. P. Group. PHP: Manual Quick Reference. http://php.net/quickref.php, as of July 2013.
-
PHP: Manual Quick Reference
-
-
-
13
-
-
84970882954
-
Fast and Precise Sanitizer Analysis with BEK
-
P. Hooimeijer, B. Livshits, D. Molnar, P. Saxena, and M. Veanes. Fast and Precise Sanitizer Analysis with BEK. In USENIX Security Symposium, 2011.
-
(2011)
USENIX Security Symposium
-
-
Hooimeijer, P.1
Livshits, B.2
Molnar, D.3
Saxena, P.4
Veanes, M.5
-
14
-
-
19944365247
-
Securing Web Application Code by Static Analysis and Runtime Protection
-
Y.-W. Huang, F. Yu, C. Hang, C.-H. Tsai, D. Lee, and S.-Y. Kuo. Securing Web Application Code by Static Analysis and Runtime Protection. In International Conference on the World Wide Web (WWW), 2004.
-
(2004)
International Conference on the World Wide Web (WWW)
-
-
Huang, Y.-W.1
Yu, F.2
Hang, C.3
Tsai, C.-H.4
Lee, D.5
Kuo, S.-Y.6
-
15
-
-
4544358830
-
Verifying Web Applications Using Bounded Model Checking
-
Y.-W. Huang, F. Yu, C. Hang, C.-H. Tsai, D. T. Lee, and S.-Y. Kuo. Verifying Web Applications Using Bounded Model Checking. In Conference on Dependable Systems and Networks (DSN), 2004.
-
(2004)
Conference on Dependable Systems and Networks (DSN)
-
-
Huang, Y.-W.1
Yu, F.2
Hang, C.3
Tsai, C.-H.4
Lee, D. T.5
Kuo, S.-Y.6
-
20
-
-
77957112438
-
Static Analysis for Detecting Taint-style Vulnerabilities in Web Applications
-
N, August 08 2010
-
N. Jovanovic, C. Kruegel, and E. Kirda. Static Analysis for Detecting Taint-style Vulnerabilities in Web Applications. Journal of Computer Security, Vol 18, N5, August 2010, 08 2010.
-
(2010)
Journal of Computer Security
, vol.18
, Issue.5
-
-
Jovanovic, N.1
Kruegel, C.2
Kirda, E.3
-
24
-
-
84923564816
-
Finding Security Vulnerabilities in Java Applications with Static Analysis
-
V. B. Livshits and M. S. Lam. Finding Security Vulnerabilities in Java Applications with Static Analysis. In USENIX Security Symposium, 2005.
-
(2005)
USENIX Security Symposium
-
-
Livshits, V. B.1
Lam, M. S.2
-
28
-
-
85180630178
-
-
as of July 2013
-
myWebland Group. myBloggie Weblog System. http://mybloggie.mywebland.com/, as of July 2013.
-
myBloggie Weblog System
-
-
-
29
-
-
79953672829
-
Dynamic Taint Analysis for Automatic Detection, Analysis, and Signature Generation of Exploits on Commodity Software
-
J. Newsome and D. Song. Dynamic Taint Analysis for Automatic Detection, Analysis, and Signature Generation of Exploits on Commodity Software. In Symposium on Network and Distributed System Security (NDSS), 2005.
-
(2005)
Symposium on Network and Distributed System Security (NDSS)
-
-
Newsome, J.1
Song, D.2
-
31
-
-
85180637360
-
-
as of July 2013
-
PHP-Nuke. CMS Portal Solution. http://www.phpnuke.org/, as of July 2013.
-
CMS Portal Solution
-
-
-
35
-
-
77955182005
-
All You Ever Wanted to Know about Dynamic Taint Analysis and Forward Symbolic Execution (but Might Have Been Afraid to Ask)
-
E. J. Schwartz, T. Avgerinos, and D. Brumley. All You Ever Wanted to Know about Dynamic Taint Analysis and Forward Symbolic Execution (but Might Have Been Afraid to Ask). In IEEE Symposium on Security and Privacy, 2010.
-
(2010)
IEEE Symposium on Security and Privacy
-
-
Schwartz, E. J.1
Avgerinos, T.2
Brumley, D.3
-
37
-
-
57849137358
-
On Automated Prepared Statement Generation to Remove SQL Injection Vulnerabilities
-
S. Thomas, L. Williams, and T. Xie. On Automated Prepared Statement Generation to Remove SQL Injection Vulnerabilities. Information and Software Technology, 51(3):589–598, 2009.
-
(2009)
Information and Software Technology
, vol.51
, Issue.3
, pp. 589-598
-
-
Thomas, S.1
Williams, L.2
Xie, T.3
-
38
-
-
85180629850
-
-
as of July 2013
-
UtopiaSoft. Utopia News Pro. http://www.utopiasoftware.net/newspro/, as of July 2013.
-
Utopia News Pro
-
-
-
43
-
-
84910681237
-
Static Detection of Security Vulnerabilities in Scripting Languages
-
Y. Xie and A. Aiken. Static Detection of Security Vulnerabilities in Scripting Languages. In USENIX Security Symposium, 2006.
-
(2006)
USENIX Security Symposium
-
-
Xie, Y.1
Aiken, A.2
|