Cross-Site Scripting Detection Based on an Enhanced Genetic Algorithm
2015; Indian Society for Education and Environment; Volume: 8; Issue: 30 Linguagem: Inglês
10.17485/ijst/2015/v8i30/86055
ISSN0974-6846
AutoresIsatou Hydara, Abu Bakar Md Sultan, Hazura Zulzalil, Novia Admodisastro,
Tópico(s)Advanced Malware Detection Techniques
ResumoSoftware security vulnerabilities have led to many successful attacks on applications, especially web applications, on a daily basis. These attacks, including cross-site scripting, have caused damages for both web site owners and users. Cross-site scripting vulnerabilities are easy to exploit but difficult to mitigate. Many solutions have been proposed for their detection. However, the problem of cross-site scripting vulnerabilities present in web applications still persists. In this paper, we propose to explore an approach based on genetic algorithms that will be able to detect cross-site scripting vulnerabilities in the source code before an application is deployed. The proposed approach is, so far, only implemented and validated on Java-based web applications, although it can be implemented in other programming languages with slight modifications. Initial evaluations have indicated promising results.Keywords: Cross-Site Scripting, Genetic Algorithm, Software Security, Vulnerability Detection
Referência(s)