Cross-Site Scripting (XSS) attacks and defense mechanisms: classification and state-of-the-art

S Gupta, BB Gupta - … Journal of System Assurance Engineering and …, 2017 - Springer
Nowadays, web applications are becoming one of the standard platforms for representing
data and service releases over the World Wide Web. Since web applications are …

Current state of research on cross-site scripting (XSS)–A systematic literature review

I Hydara, ABM Sultan, H Zulzalil… - Information and Software …, 2015 - Elsevier
Context Cross-site scripting (XSS) is a security vulnerability that affects web applications. It
occurs due to improper or lack of sanitization of user inputs. The security vulnerability …

Detecting malicious urls using lexical analysis

MSI Mamun, MA Rathore, AH Lashkari… - Network and System …, 2016 - Springer
The Web has long become a major platform for online criminal activities. URLs are used as
the main vehicle in this domain. To counter this issues security community focused its efforts …

MLPXSS: an integrated XSS-based attack detection scheme in web applications using multilayer perceptron technique

FMM Mokbal, W Dan, A Imran, L Jiuchuan… - IEEE …, 2019 - ieeexplore.ieee.org
Dynamic web applications play a vital role in providing resources manipulation and
interaction between clients and servers. The features presently supported by browsers have …

[PDF][PDF] XSSClassifier: an efficient XSS attack detection approach based on machine learning classifier on SNSs

S Rathore, PK Sharma, JH Park - Journal of Information …, 2017 - koreascience.kr
Social networking services (SNSs) such as Twitter, MySpace, and Facebook have become
progressively significant with its billions of users. Still, alongside this increase is an increase …

A survey of detection methods for XSS attacks

U Sarmah, DK Bhattacharyya, JK Kalita - Journal of Network and Computer …, 2018 - Elsevier
Cross-site scripting attack (abbreviated as XSS) is an unremitting problem for the Web
applications since the early 2000s. It is a code injection attack on the client-side where an …

Upgrading HTTPS in mid-air: An empirical study of strict transport security and key pinning

M Kranch, J Bonneau - 22nd Annual Network and Distributed …, 2015 - nyuscholars.nyu.edu
We have conducted the first in-depth empirical study of two important new web security
features: strict transport security (HSTS) and public-key pinning. Both have been added to …

[HTML][HTML] Dynamic feature selection model for adaptive cross site scripting attack detection using developed multi-agent deep Q learning model

IK Thajeel, K Samsudin, SJ Hashim… - Journal of King Saud …, 2023 - Elsevier
Web applications' popularity has raised attention in various service domains, which
increased the concern about cyber-attacks. One of these most serious and frequent web …

Defending malicious script attacks using machine learning classifiers

N Khan, J Abdullah, AS Khan - Wireless Communications and …, 2017 - Wiley Online Library
The web application has become a primary target for cyber criminals by injecting malware
especially JavaScript to perform malicious activities for impersonation. Thus, it becomes an …

XSS adversarial example attacks based on deep reinforcement learning

L Chen, C Tang, J He, H Zhao, X Lan, T Li - Computers & Security, 2022 - Elsevier
Cross-site scripting (XSS) attack is one of the most serious security problems in web
applications. Although deep neural network (DNN) has been used in XSS attack detection …