首页> 外国专利> Cross-site scripting prevention in dynamic content

Cross-site scripting prevention in dynamic content

机译:动态内容中的跨站点脚本防护

摘要

Embodiment relate to systems, methods, and computer storage media for suppressing cross-site scripting in a content delivery system. A request is received for content that includes a scripted item or scripted items. The scripted item is identified within the content. An identifier is associated with the scripted element when the scripted element is an intended scripted element to be associated with the content. The identifier may be a hash value based from a hash function and the scripted item. Prior to communicating the content to a user, the scripted item is identified again to determine if an identifier is associated with the scripted item. If an identifier is associated with the scripted item, the identifier is evaluated to determine if the identifier is appropriate. When the identifier is determined to not be appropriate, the scripted item is prevented from being communicated to a user.
机译:实施例涉及用于抑制内容递送系统中的跨站点脚本的系统,方法和计算机存储介质。收到对包含脚本项或脚本项的内容的请求。脚本项目在内容中标识。当脚本元素是要与内容相关联的预期脚本元素时,标识符与脚本元素相关联。标识符可以是基于哈希函数和脚本项的哈希值。在将内容传达给用户之前,再次标识脚本项以确定标识符是否与脚本项相关联。如果标识符与脚本项目相关联,则对标识符进行评估以确定该标识符是否合适。当确定标识符不合适时,阻止了脚本项目被传达给用户。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号