Tài liệu tham khảo |
Loại |
Chi tiết |
[1]. Avi Kak, Lecture notes on “Computer and network security”, Purdue Univerity, 2013 |
Sách, tạp chí |
Tiêu đề: |
Lecture notes on “Computer and network security” |
Tác giả: |
Avi Kak |
Nhà XB: |
Purdue University |
Năm: |
2013 |
|
[2]. C. Anley. Advanced SQL Injection in SQL Server Applications. An NGSSoftware Insight Security Research (NISR) publication, 2002. URL:http://www.nextgenss.com/papers/advanced sql injection.pdf |
Sách, tạp chí |
Tiêu đề: |
Advanced SQL Injection in SQL Server Applications |
Tác giả: |
C. Anley |
Nhà XB: |
An NGSSoftware Insight Security Research (NISR) |
Năm: |
2002 |
|
[6]. D. Dean and D. Wagner. Intrusion detection via static analysis. In Proceedings of the IEEE Symposium on Research in Security and Privacy, Oakland, CA, May 2001. IEEE Computer Society, Technical Committee on Security and |
Sách, tạp chí |
Tiêu đề: |
Intrusion detection via static analysis |
Tác giả: |
D. Dean, D. Wagner |
Nhà XB: |
IEEE Computer Society |
Năm: |
2001 |
|
[7]. Fangqi Sun, Liang Xu, Zhengdong Su: Client-Side Detection of XSS Worms by Monitoring Payload Propagation. Proceeding of ESORICS 2009, Saint Malo, France, (2009) |
Sách, tạp chí |
Tiêu đề: |
Client-Side Detection of XSS Worms by Monitoring Payload Propagation |
Tác giả: |
Fangqi Sun, Liang Xu, Zhengdong Su |
Nhà XB: |
Proceeding of ESORICS 2009 |
Năm: |
2009 |
|
[8]. G.A. Di Lucca, A.R. Fasolino, M. Mastroianni, and P. Tramontana. Identifying Cross Site Scripting Vulnerabilities in Web Applications. In Sixth IEEE International Workshop on Web Site Evolution (WSE‟04), pages 71 – 80, (2004) |
Sách, tạp chí |
Tiêu đề: |
Identifying Cross Site Scripting Vulnerabilities in Web Applications |
Tác giả: |
G.A. Di Lucca, A.R. Fasolino, M. Mastroianni, P. Tramontana |
Nhà XB: |
Sixth IEEE International Workshop on Web Site Evolution (WSE'04) |
Năm: |
2004 |
|
[9]. Gary Wassermann and Zhendong Su, “Static Detection of Cross-Site Scripting Vulnerabilities”. In Proceedings of ICSE 2008, Leipzig, Germany, 2008 |
Sách, tạp chí |
Tiêu đề: |
Static Detection of Cross-Site Scripting Vulnerabilities |
Tác giả: |
Gary Wassermann, Zhendong Su |
Nhà XB: |
Proceedings of ICSE 2008 |
Năm: |
2008 |
|
[10]. Gary Wassermann, Dachuan Yu, Ajay Chander, Dinakar Dhurjati, Hiroshi Inamura, and Zhendong Su, “Dynamic Test Input Generation for Web Applications”. In Proceedings of ISSTA 2008, Seattle, WA, 2008 |
Sách, tạp chí |
Tiêu đề: |
Dynamic Test Input Generation for Web Applications |
Tác giả: |
Gary Wassermann, Dachuan Yu, Ajay Chander, Dinakar Dhurjati, Hiroshi Inamura, Zhendong Su |
Nhà XB: |
Proceedings of ISSTA 2008 |
Năm: |
2008 |
|
[11]. Gary Wassermann, Zhendong Su, “Sound and Precise Analysis of Web Applications for Injection Vulnerabilities”. In Proceedings of PLDI 2007, San Diego, CA, 2007 |
Sách, tạp chí |
Tiêu đề: |
Sound and Precise Analysis of Web Applications for Injection Vulnerabilities |
|
[13]. Livshits, B., Cui, W.: Spectator: detection and containment of JavaScript worms. In:USENIX 2008 Annual Technical Conference on Annual Technical Conference, pp. 335–348. USENIX Association (2008) |
Sách, tạp chí |
Tiêu đề: |
Spectator: detection and containment of JavaScript worms |
Tác giả: |
Livshits, B., Cui, W |
Nhà XB: |
USENIX Association |
Năm: |
2008 |
|
[16]. Y.Minamide.Static approximation of dynamically generated web pages. In Proceedings of the 14th International World Wide Web Conference,2005 |
Sách, tạp chí |
Tiêu đề: |
Static approximation of dynamically generated web pages |
Tác giả: |
Y. Minamide |
Nhà XB: |
Proceedings of the 14th International World Wide Web Conference |
Năm: |
2005 |
|
[17]. Zhendong Su and Gary Wassermann, “The Essence of Command Injection Attacks in Web Applications”, In Proceedings of POPL'06, Charleston, South Carolina, 2006 |
Sách, tạp chí |
Tiêu đề: |
The Essence of Command Injection Attacks in Web Applications |
Tác giả: |
Zhendong Su, Gary Wassermann |
Nhà XB: |
Proceedings of POPL'06 |
Năm: |
2006 |
|
[3]. C. Brabrand, A. Mứller, M. Ricky, and M. I. Schwartzbach. Powerforms: Declarative client-side form field validation. World Wide Web, 3(4), 2000 |
Khác |
|
[4]. Chris Anley, Advanced SQL Injection In SQL Server Application – 2002 [5]. Christopher Kruegel and Giovanni Vigna. Anomaly Detection of Web-based |
Khác |
|
[14]. The Essence of Command Injection Attacks in Web Applications, Zhendong Su, Gary Wassermann, University of California, Davis, USA |
Khác |
|