期刊文献+

基于跨站脚本的路由设备跨域攻击模型

Cross-Domain Attack Technology of Network Device Based on Cross Site Scripting
下载PDF
导出
摘要 路由设备的脚本攻击研究在国内还处于早期阶段,随着国内路由设备的普及,它潜在的安全影响越来越受到关注。阐述用户浏览器提交数据的详细过程,以及整个过程存在的脚本攻击威胁,并通过具体的方法完成路由设备的远程攻击、建立跨域漏洞攻击模型。 Cross-site-scripting on network device in China is still at an early stage, with the popularization of routing equipment, its potential secu-rity problems are increasingly concerned. Analyzes the detailed process of the user submit data by browser, shows the whole script attack process, through the concrete method to complete the remote attack of the equipment, establishes the cross-domain attack model.
作者 杨勇 胡勇
出处 《现代计算机(中旬刊)》 2016年第2期76-80,共5页 Modern Computer
关键词 跨站脚本 Flash跨站 跨域攻击模型 路由器安全 Scripting Attack Flash Scripting Cross-Domain Attack Technology Router Security
  • 相关文献

参考文献7

二级参考文献35

  • 1张永铮,方滨兴,迟悦.计算机弱点数据库综述与评价[J].计算机科学,2006,33(8):19-21. 被引量:8
  • 2Chinotec Technologies Company. Paros--for Web Application Security Assessment[EB/OL]. (2008-08-15). http://www, parosproxy. org/index,shtml.
  • 3OWASE OWASP Testing Project[EB/OL]. (2008-08-10). http:// www.owasp.org/.
  • 4Klein A. DOM Based Cross Site Scripting or XSS of the Third Kind[EB/OL]. (2008-07-28). http://www, Webappsec.org/projeets/ articles/071105.html,.
  • 5Fortify Software Inc.. Cross-site Scripting(XSS)[EB/OL]. (2008-04- 07). http://www.owasp.org/index.php/Cross-site Scripting_(XSS).
  • 6Ismail O, Etoh M, Kadobayashi Y. A Proposal and Implementation of Automatic Detection/Collection System for Cross-site Scripting Vulnerability[C]//Proc. of the 18th International Conference on Advanced Information Networking and Applications. Washington D C., USA: IEEE Computer Society. 2004.
  • 7National Vulnerability Database(NVD)[Z]. [2009-04-16]. http://nvd.nist.gov/home.cfm.
  • 8Paros[Z]. [2009-04-16]. http://www.parosproxy.org/index.shtml.
  • 9XSS-Me[Z]. [2009-04-16]. http://www.securitycompass.com/exploite.tml.
  • 10Auronen L. Tool-based Approach to Assessing Web Application Security[D]. Helsinki, Finland: Helsinki University of Technology, 2002.

共引文献40

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部