【24h】

Quality Of Secured Web Applications

机译:安全的Web应用程序的质量

获取原文
           

摘要

ABSTRACT: Adding security functions in existing Web application servers is now vital for the IS of companies and organizations. Writing crosscutting functions in complex software should take advantage of the modularity offered by new software development approaches. With Aspect-Oriented Programming (AOP), separating concerns when designing an application fosters reuse, parameterization and maintenance. In this paper, we design a security aspect called AOPSec for detecting SQL injection and Cross Scripting Site (XSS) that are common attacks in web Servers This paper presents a brief description for the mostly used AOP approaches and analyzes them from a security point of view. AspectJ is then considered the most appropriate language to enforce security issues but at the same time it is not complete. This paper shows that some security crosscutting concerns need more means than those that are currently exist in AspectJ.
机译:摘要:现在,在现有Web应用程序服务器中添加安全功能对于公司和组织的IS至关重要。在复杂软件中编写横切功能应利用新软件开发方法提供的模块化。使用面向方面的编程(AOP),在设计应用程序时将关注点分离可以促进重用,参数化和维护。在本文中,我们设计了一个称为AOPSec的安全方面,用于检测Web服务器中常见的攻击SQL注入和跨脚本站点(XSS)。本文简要介绍了最常用的AOP方法,并从安全的角度对其进行了分析。 。然后,AspectJ被认为是实施安全性问题的最合适的语言,但同时它还不完整。本文表明,某些安全性横切关注点需要比AspectJ中当前存在的手段更多的手段。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号