浏览器中拦截Web攻击的研究  

The Research of Defending Web- based Attack in Browser

在线阅读下载全文

作  者:王丽[1] 钱文祥 

机构地区:[1]安徽理工大学计算机学院,安徽淮南232001

出  处:《安徽理工大学学报(自然科学版)》2015年第1期60-63,共4页Journal of Anhui University of Science and Technology:Natural Science

摘  要:浏览器是互联网的重要入口,其脆弱性直接影响到用户数据和财产的安全。本文在分析跨站脚本攻击、跨站请求攻击以及点击劫持的攻击方法和成因的基础上,提出相应的动态检测和拦截方式,从而加强浏览器的安全性。通过使用Web Browser控件实现自定义浏览器,载入网页脚本预过滤等相关模块,实现防御功能。相关实验证明,本方案将有效提升浏览器安全性,减少网络风险。The browser is an important entrance of the Internet. Its vulnerability directly affects users' data and property safety. Three kinds of common attack methods via web browser were presented and analyzed,i. e. Cross Site Scripting attack,Cross Site Request Forgery attack and Click- jacking attack. According to the attacker's attack mode,three corresponding methods of defending attacks were proposed so as to strengthen safety of the browser. The self- made browser was achieved by using the Web Brower control. Webpage script prefiltering and other related module were installed and loaded,the defense function was realized. Through related experiments,the systems using the proposed method can block attacks. The method effectively improves the browser safety and reduces the risk of network.

关 键 词:攻击识别 浏览器安全 动态检测 

分 类 号:TP391[自动化与计算机技术—计算机应用技术]

 

参考文献:

正在载入数据...

 

二级参考文献:

正在载入数据...

 

耦合文献:

正在载入数据...

 

引证文献:

正在载入数据...

 

二级引证文献:

正在载入数据...

 

同被引文献:

正在载入数据...

 

相关期刊文献:

正在载入数据...

相关的主题
相关的作者对象
相关的机构对象