跨站脚本攻击与防范研究  

Research on Cross-Site Scripting attack and prevention

在线阅读下载全文

作  者:张雨锋 王炅 Zang Yufeng;Wang Jiong(College of Computer and Control Engineering,Minjiang University,Fuzhou 350108,China)

机构地区:[1]闽江学院计算机与控制工程学院,福建福州350108

出  处:《无线互联科技》2023年第13期139-142,147,共5页Wireless Internet Technology

基  金:跨站脚本攻击原理与利用分析,项目编号:103952022110。

摘  要:随着互联网的快速发展,越来越多的Web应用漏洞不断涌现,这对互联网安全造成了很大的威胁。其中,跨站脚本漏洞在Web漏洞中尤为常见,根据这一漏洞,跨站脚本攻击得以实现。这种攻击可以将恶意代码植入特定的网页,从而破坏系统的安全性。跨站脚本攻击具有匿名性、易操作、难以检测等特点,是当前互联网上比较常见的攻击手段之一。文章基于Web的环境探讨跨站脚本攻击问题,研究跨站脚本攻击的攻击原理,根据不同的类别分析漏洞成因,研究这类攻击的危害和影响,根据攻击特点提出相应的预防措施。With the rapid development of the Internet,more and more Web application vulnerabilities are emerging,posing a great threat to internet security.Among them,Cross-Site Scripting vulnerabilities are particularly common,which enables Cross-Site Scripting attacks to be carried out based on this vulnerability.This type of attack can inject malicious code into specific Web pages,thereby compromising the security of the system.Moreover,Cross-Site Scripting attacks are characterized by anonymity,ease of operation,and difficulty of detection,making them one of the common attack methods on the Internet today.This article will explore Cross-Site Scripting attacks in the context of the web environment,study the attack principles of Cross-Site Scripting attacks,analyze the causes of vulnerabilities based on different categories,and study the dangers and impacts of such attacks,proposing corresponding preventive measures based on the attack characteristics.

关 键 词:WEB应用安全 跨站脚本 攻击原理与漏洞成因 

分 类 号:TP393.08[自动化与计算机技术—计算机应用技术]

 

参考文献:

正在载入数据...

 

二级参考文献:

正在载入数据...

 

耦合文献:

正在载入数据...

 

引证文献:

正在载入数据...

 

二级引证文献:

正在载入数据...

 

同被引文献:

正在载入数据...

 

相关期刊文献:

正在载入数据...

相关的主题
相关的作者对象
相关的机构对象