Surviving the web: A journey into web session security
In this article, we survey the most common attacks against web sessions, that is, attacks that
target honest web browser users establishing an authenticated session with a trusted web …
target honest web browser users establishing an authenticated session with a trusted web …
Cross-site scripting (XSS) attacks and mitigation: A survey
The results of the Cisco 2018 Annual Security Report show that all analyzed web
applications have at least one vulnerability. It also shows that web attacks are becoming …
applications have at least one vulnerability. It also shows that web attacks are becoming …
The smoke detection for early fire-alarming system base on video processing
TH Chen, YH Yin, SF Huang… - … international conference on …, 2006 - ieeexplore.ieee.org
The paper presents an smoke-detection method for early fire-alarming system based on
video processing. The basic strategy of smoke-pixel judgment is composed of two decision …
video processing. The basic strategy of smoke-pixel judgment is composed of two decision …
Mitch: A machine learning approach to the black-box detection of CSRF vulnerabilities
Cross-Site Request Forgery (CSRF) is one of the oldest and simplest attacks on the Web, yet
it is still effective on many websites and it can lead to severe consequences, such as …
it is still effective on many websites and it can lead to severe consequences, such as …
CVSS: A cost-efficient and QoS-aware video streaming using cloud services
Video streams, either in form of on-demand streaming or live streaming, usually have to be
converted (ie, transcoded) based on the characteristics of clients' devices (eg, spatial …
converted (ie, transcoded) based on the characteristics of clients' devices (eg, spatial …
CookiExt: Patching the browser against session hijacking attacks
Session cookies constitute one of the main attack targets against client authentication on the
Web. To counter these attacks, modern web browsers implement native cookie protection …
Web. To counter these attacks, modern web browsers implement native cookie protection …
RiPKI: The tragic story of RPKI deployment in the Web ecosystem
Web content delivery is one of the most important services on the Internet. Access to
websites is typically secured via TLS. However, this security model does not account for …
websites is typically secured via TLS. However, this security model does not account for …
Design and evaluation of feature distributed malware attacks against the Internet of Things (IoT)
In this paper, we analyse the Internet of Things (IoT) aspect of smart home from a security
perspective, and adapt an advanced malware technique (called feature-distributed …
perspective, and adapt an advanced malware technique (called feature-distributed …
A supervised learning approach to protect client authentication on the web
Browser-based defenses have recently been advocated as an effective mechanism to
protect potentially insecure web applications against the threats of session hijacking …
protect potentially insecure web applications against the threats of session hijacking …
[PDF][PDF] Shepherd: a generic approach to automating website login
To gauge adoption of web security measures, largescale testing of website security is
needed. However, the diversity of modern websites makes a structured approach to testing a …
needed. However, the diversity of modern websites makes a structured approach to testing a …