Surviving the web: A journey into web session security

S Calzavara, R Focardi, M Squarcina… - ACM Computing Surveys …, 2017 - dl.acm.org
In this article, we survey the most common attacks against web sessions, that is, attacks that
target honest web browser users establishing an authenticated session with a trusted web …

CookiExt: Patching the browser against session hijacking attacks

M Bugliesi, S Calzavara, R Focardi… - Journal of Computer …, 2015 - content.iospress.com
Session cookies constitute one of the main attack targets against client authentication on the
Web. To counter these attacks, modern web browsers implement native cookie protection …

Testing for integrity flaws in web sessions

S Calzavara, A Rabitti, A Ragazzo… - … Security–ESORICS 2019 …, 2019 - Springer
Web sessions are fragile and can be attacked at many different levels. Classic attacks like
session hijacking, session fixation and cross-site request forgery are particularly dangerous …

Syntax-Guided Automated Program Repair for Hyperproperties

R Beutner, TH Hsu, B Bonakdarpour… - … Conference on Computer …, 2024 - Springer
We study the problem of automatically repairing infinite-state software programs wrt
temporal hyperproperties. As a first step, we present a repair approach for the temporal logic …

Micro-policies for web session security

S Calzavara, R Focardi, N Grimm… - 2016 IEEE 29th …, 2016 - ieeexplore.ieee.org
Micro-policies, originally proposed to implement hardware-level security monitors, constitute
a flexible and general enforcement technique, based on assigning security tags to system …

Proving Reliability of Image Processing Techniques in Digital Forensics Applications

S Iqbal, W Khan, A Alothaim, A Qamar… - Security and …, 2022 - Wiley Online Library
Binary images have found its place in many applications, such as digital forensics involving
legal documents, authentication of images, digital books, contracts, and text recognition …

Language-based web session integrity

S Calzavara, R Focardi, N Grimm… - 2020 IEEE 33rd …, 2020 - ieeexplore.ieee.org
Session management is a fundamental component of web applications: despite the
apparent simplicity, correctly implementing web sessions is extremely tricky, as witnessed by …

[PDF][PDF] Client-and Server-Side Security Technologies for JavaScript Web Applications

W De Groef - eng. PhD thesis. University of Leuven, 2016 - lirias.kuleuven.be
Building secure web applications is notoriously difficult. The growing importance of
JavaScript as a mainstream programming language for web applications, has led to the …

Web session security: formal verification, client-side enforcement and experimental analysis

W Khan - 2015 - dspace.unive.it
Web applications are the dominant means to provide access to millions of on-line services
and applications such as banking and e-commerce. To personalize users' web experience …

Disciplined techniques for the analysis and protection of security-critical systems

M Tempesta - 2019 - dspace.unive.it
In the last years most of our daily activities have moved to the digital world, including
sensitive operations related to health data management and financial processes. Security …