xJS: Practical XSS Prevention for Web Application Development
Source: Microsoft Research
The authors present xJS, a practical framework for preventing code-injections in the web environment and thus assisting for the development of XSS-free web applications. xJS aims on being fast, developer-friendly and providing backwards compatibility. They implement and evaluate the solution in three leading web browsers and in the Apache web server. They show that the framework can successfully prevent all 1,380 real-world attacks that were collected from a well-known XSS attack repository. Furthermore, the framework imposes negligible computational overhead in both the server and the client side, and has no negative side-effects in the overall user's browsing experience.
| Format: | Size: | 140.20 | |
| Date: | May 2010 |
People who downloaded this item also downloaded
- Exploring the Relationship Between Web Application Development Tools and Security
- Using PHP to Create Custom SSO Login and Sign-Off Pages
- PHP Framework for Database Management Based on MVC Pattern
- Developing Web Applications
- PHP Hacks: Create Excel Spreadsheets Dynamically



