SWAP: Mitigating XSS Attacks Using a Reverse Proxy
Source: University of California
Due to the increasing amount of Web sites offering features to contribute rich content, and the frequent failure of Web developers to properly sanitize user input, cross-site scripting prevails as the most significant security threat to Web applications. Using cross-site scripting techniques, miscreants can hijack Web sessions, and craft credible phishing sites. Previous work towards protecting against cross-site scripting attacks suffers from various drawbacks, such as practical infeasibility of deployment due to the need for client-side modifications, inability to reliably detect all injected scripts, and complex, error-prone parameterization. This paper introduces SWAP (Secure Web Application Proxy), a server-side solution for detecting and preventing cross-site scripting attacks.
| Format: | Size: | 130.70 | |
| Date: | May 2009 |
People who downloaded this item also downloaded
- WebCenter Task Flow Customization
- Detecting Persistent Cross-Site Scripting
- XSSDS: Server-side Detection of Cross-site Scripting Attacks
- Capacity Region of a Wireless Mesh Backhaul Network Over the CSMA/CA MAC
- Policy Based Decentralized Group Key Security for Mobile Ad-Hoc Networks



