A dynamic detection method based on Web crawler and page code behavior for XSS vulnerability

XSS vulnerability is a common vulnerability of attacking the Web application and getting the user’s privacy data.Traditional XSS vulnerability detection’s softwares aren’t specially detecting for AJAX Web application.There is a huge disparity in the inspection accuracy.According to this situation,th...

Full description

Saved in:
Bibliographic Details
Main Authors: Yi LIU, Junbin HONG
Format: Article
Language:zho
Published: Beijing Xintong Media Co., Ltd 2016-03-01
Series:Dianxin kexue
Subjects:
Online Access:http://www.telecomsci.com/zh/article/doi/10.11959/j.issn.1000-0801.2016068/
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1841529119116886016
author Yi LIU
Junbin HONG
author_facet Yi LIU
Junbin HONG
author_sort Yi LIU
collection DOAJ
description XSS vulnerability is a common vulnerability of attacking the Web application and getting the user’s privacy data.Traditional XSS vulnerability detection’s softwares aren’t specially detecting for AJAX Web application.There is a huge disparity in the inspection accuracy.According to this situation,the XSS vulnerability characteristics of AJAX Web applications were described in detail,and a dynamic detection method based on Web crawler and page code behavior was proposed.Experimental results show that the proposed method has good performance in labor-saving,time saving and vulnerability detection effect.
format Article
id doaj-art-b29381fd4e1643d49e61c7af3347ca79
institution Kabale University
issn 1000-0801
language zho
publishDate 2016-03-01
publisher Beijing Xintong Media Co., Ltd
record_format Article
series Dianxin kexue
spelling doaj-art-b29381fd4e1643d49e61c7af3347ca792025-01-15T03:24:54ZzhoBeijing Xintong Media Co., LtdDianxin kexue1000-08012016-03-0132879159800415A dynamic detection method based on Web crawler and page code behavior for XSS vulnerabilityYi LIUJunbin HONGXSS vulnerability is a common vulnerability of attacking the Web application and getting the user’s privacy data.Traditional XSS vulnerability detection’s softwares aren’t specially detecting for AJAX Web application.There is a huge disparity in the inspection accuracy.According to this situation,the XSS vulnerability characteristics of AJAX Web applications were described in detail,and a dynamic detection method based on Web crawler and page code behavior was proposed.Experimental results show that the proposed method has good performance in labor-saving,time saving and vulnerability detection effect.http://www.telecomsci.com/zh/article/doi/10.11959/j.issn.1000-0801.2016068/XSS vulnerabilitiyweb crawlervulnerabilitiy detectingAJAX Web application
spellingShingle Yi LIU
Junbin HONG
A dynamic detection method based on Web crawler and page code behavior for XSS vulnerability
Dianxin kexue
XSS vulnerabilitiy
web crawler
vulnerabilitiy detecting
AJAX Web application
title A dynamic detection method based on Web crawler and page code behavior for XSS vulnerability
title_full A dynamic detection method based on Web crawler and page code behavior for XSS vulnerability
title_fullStr A dynamic detection method based on Web crawler and page code behavior for XSS vulnerability
title_full_unstemmed A dynamic detection method based on Web crawler and page code behavior for XSS vulnerability
title_short A dynamic detection method based on Web crawler and page code behavior for XSS vulnerability
title_sort dynamic detection method based on web crawler and page code behavior for xss vulnerability
topic XSS vulnerabilitiy
web crawler
vulnerabilitiy detecting
AJAX Web application
url http://www.telecomsci.com/zh/article/doi/10.11959/j.issn.1000-0801.2016068/
work_keys_str_mv AT yiliu adynamicdetectionmethodbasedonwebcrawlerandpagecodebehaviorforxssvulnerability
AT junbinhong adynamicdetectionmethodbasedonwebcrawlerandpagecodebehaviorforxssvulnerability
AT yiliu dynamicdetectionmethodbasedonwebcrawlerandpagecodebehaviorforxssvulnerability
AT junbinhong dynamicdetectionmethodbasedonwebcrawlerandpagecodebehaviorforxssvulnerability