Type-specific languages to fight injection attacks

Authors

Kurilova, Darya
Chung, Benjamin
Omar, Cyrus
Potanin, Alex
Nistor, Ligia
Aldrich, Jonathan

Journal Title

Journal ISSN

Volume Title

Publisher

Association for Computing Machinery (ACM)

Access Statement

Research Projects

Organizational Units

Journal Issue

Abstract

Injection vulnerabilities have topped rankings of the most critical web application vulnerabilities for several years [1, 2]. They can occur anywhere where user input may be erroneously executed as code. The injected input is typically aimed at gaining unauthorized access to the system or to private information within it, corrupting the system's data, or disturbing system availability. Injection vulnerabilities are tedious and difficult to prevent.

Description

Keywords

Citation

Source

Book Title

Proceedings of the 2014 Symposium and Bootcamp on the Science of Security, HotSoS 2014

Entity type

Publication

Access Statement

License Rights

Restricted until