Surviving the web: A journey into web session security

S Calzavara, R Focardi, M Squarcina… - ACM Computing Surveys …, 2017 - dl.acm.org
In this article, we survey the most common attacks against web sessions, that is, attacks that
target honest web browser users establishing an authenticated session with a trusted web …

Cross-site scripting (XSS) attacks and mitigation: A survey

GE Rodríguez, JG Torres, P Flores, DE Benavides - Computer Networks, 2020 - Elsevier
The results of the Cisco 2018 Annual Security Report show that all analyzed web
applications have at least one vulnerability. It also shows that web attacks are becoming …

The smoke detection for early fire-alarming system base on video processing

TH Chen, YH Yin, SF Huang… - … international conference on …, 2006 - ieeexplore.ieee.org
The paper presents an smoke-detection method for early fire-alarming system based on
video processing. The basic strategy of smoke-pixel judgment is composed of two decision …

Mitch: A machine learning approach to the black-box detection of CSRF vulnerabilities

S Calzavara, M Conti, R Focardi… - 2019 IEEE European …, 2019 - ieeexplore.ieee.org
Cross-Site Request Forgery (CSRF) is one of the oldest and simplest attacks on the Web, yet
it is still effective on many websites and it can lead to severe consequences, such as …

CVSS: A cost-efficient and QoS-aware video streaming using cloud services

X Li, MA Salehi, M Bayoumi… - 2016 16th IEEE/ACM …, 2016 - ieeexplore.ieee.org
Video streams, either in form of on-demand streaming or live streaming, usually have to be
converted (ie, transcoded) based on the characteristics of clients' devices (eg, spatial …

CookiExt: Patching the browser against session hijacking attacks

M Bugliesi, S Calzavara, R Focardi… - Journal of Computer …, 2015 - content.iospress.com
Session cookies constitute one of the main attack targets against client authentication on the
Web. To counter these attacks, modern web browsers implement native cookie protection …

RiPKI: The tragic story of RPKI deployment in the Web ecosystem

M Wählisch, R Schmidt, TC Schmidt… - Proceedings of the 14th …, 2015 - dl.acm.org
Web content delivery is one of the most important services on the Internet. Access to
websites is typically secured via TLS. However, this security model does not account for …

Design and evaluation of feature distributed malware attacks against the Internet of Things (IoT)

B Min, V Varadharajan - 2015 20th International Conference on …, 2015 - ieeexplore.ieee.org
In this paper, we analyse the Internet of Things (IoT) aspect of smart home from a security
perspective, and adapt an advanced malware technique (called feature-distributed …

A supervised learning approach to protect client authentication on the web

S Calzavara, G Tolomei, A Casini, M Bugliesi… - ACM Transactions on …, 2015 - dl.acm.org
Browser-based defenses have recently been advocated as an effective mechanism to
protect potentially insecure web applications against the threats of session hijacking …

[PDF][PDF] Shepherd: a generic approach to automating website login

H Jonker, S Karsch, B Krumnow, M Sleegers - 2020 - repository.ubn.ru.nl
To gauge adoption of web security measures, largescale testing of website security is
needed. However, the diversity of modern websites makes a structured approach to testing a …