Browsing by Subject "dynamic taint"

Now showing items 1-1 of 1

  • Automatic Creation of SQL Injection and Cross-Site Scripting Attacks 

    Michael Ernst; Program Analysis (2008-09-10)
    We present a technique for finding security vulnerabilitiesin Web applications. SQL Injection (SQLI) and cross-sitescripting (XSS) attacks are widespread forms of attackin which the attacker crafts the input to the application ...