A copy of this work was available on the public web and has been preserved in the Wayback Machine. The capture dates from 2017; you can also visit the original URL.
The file type is application/pdf
.
Context-sensitive auto-sanitization in web templating languages using type qualifiers
2011
Proceedings of the 18th ACM conference on Computer and communications security - CCS '11
Scripting vulnerabilities, such as cross-site scripting (XSS), plague web applications today. Most research on defense techniques has focused on securing existing legacy applications written in general-purpose languages, such as Java and PHP. However, recent and emerging applications have widely adopted web templating frameworks that have received little attention in research. Web templating frameworks offer an ideal opportunity to ensure safety against scripting attacks by secure construction,
doi:10.1145/2046707.2046775
dblp:conf/ccs/SamuelSS11
fatcat:z7pxkyberzboroqtvuvdrc4nrm