检索规则说明:AND代表“并且”;OR代表“或者”;NOT代表“不包含”;(注意必须大写,运算符两边需空一格)
检 索 范 例 :范例一: (K=图书馆学 OR K=情报学) AND A=范并思 范例二:J=计算机应用与软件 AND (U=C++ OR U=Basic) NOT M=Visual
机构地区:[1]安徽理工大学计算机学院,安徽淮南232001
出 处:《安徽理工大学学报(自然科学版)》2015年第1期60-63,共4页Journal of Anhui University of Science and Technology:Natural Science
摘 要:浏览器是互联网的重要入口,其脆弱性直接影响到用户数据和财产的安全。本文在分析跨站脚本攻击、跨站请求攻击以及点击劫持的攻击方法和成因的基础上,提出相应的动态检测和拦截方式,从而加强浏览器的安全性。通过使用Web Browser控件实现自定义浏览器,载入网页脚本预过滤等相关模块,实现防御功能。相关实验证明,本方案将有效提升浏览器安全性,减少网络风险。The browser is an important entrance of the Internet. Its vulnerability directly affects users' data and property safety. Three kinds of common attack methods via web browser were presented and analyzed,i. e. Cross Site Scripting attack,Cross Site Request Forgery attack and Click- jacking attack. According to the attacker's attack mode,three corresponding methods of defending attacks were proposed so as to strengthen safety of the browser. The self- made browser was achieved by using the Web Brower control. Webpage script prefiltering and other related module were installed and loaded,the defense function was realized. Through related experiments,the systems using the proposed method can block attacks. The method effectively improves the browser safety and reduces the risk of network.
分 类 号:TP391[自动化与计算机技术—计算机应用技术]
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在链接到云南高校图书馆文献保障联盟下载...
云南高校图书馆联盟文献共享服务平台 版权所有©
您的IP:216.73.216.195