首页> 外文学位 >Protecting Client Browsers with a Principal-based Approach.
【24h】

Protecting Client Browsers with a Principal-based Approach.

机译:使用基于委托人的方法保护客户端浏览器。

获取原文
获取原文并翻译 | 示例

摘要

Web-based attacks have become very prevalent on the Internet. As conducted by Kaspersky lab, 34.7% of their users were targeted by a web-based attack at least once while browsing the Internet. In my thesis, I will discuss three fundamental tasks in building a principal-based browser architecture preventing various web attacks. In the first task, I will introduce how to prevent and detect attacks, such as drive-by download, which penetrate the boundary of a browser principal. In particular, I will present JShield, a vulnerability-based detection engine that is more robust to obfuscated drive-by download attacks, when compared to various anti-virus software and most recent research papers. Then, in the second task, I will introduce configurable origin policy (COP), the access control policy of next generation browsers, which gives web sites more freedom to render various contents inside one principal. In the end, I will also introduce the communication between different browser principals.
机译:基于Web的攻击已在Internet上非常普遍。正如卡巴斯基实验室所进行的那样,他们有34.7%的用户在浏览Internet时至少一次受到了基于Web的攻击。在我的论文中,我将讨论构建基于主体的浏览器体系结构以防止各种Web攻击的三个基本任务。在第一个任务中,我将介绍如何预防和检测渗透到浏览器主体边界的攻击,例如过分下载。特别是,我将介绍JShield,它是一个基于漏洞的检测引擎,与各种防病毒软件和最新的研究论文相比,该引擎对于混淆的行车式下载攻击更为强大。然后,在第二个任务中,我将介绍可配置的源策略(COP),即下一代浏览器的访问控制策略,它使网站拥有更大的自由来在一个主体中呈现各种内容。最后,我还将介绍不同浏览器主体之间的通信。

著录项

  • 作者

    Cao, Yinzhi.;

  • 作者单位

    Northwestern University.;

  • 授予单位 Northwestern University.;
  • 学科 Computer science.
  • 学位 Ph.D.
  • 年度 2014
  • 页码 167 p.
  • 总页数 167
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号