首页> 外国专利> Detection of DOM-based cross-site scripting vulnerabilities

Detection of DOM-based cross-site scripting vulnerabilities

机译:检测基于DOM的跨站点脚本漏洞

摘要

Testing a Web-based application for security vulnerabilities. At least one client request including a payload having a unique identifier can be communicated to the Web-based application. Response HTML and an associated Document Object Model (DOM) object can be received from the Web-based application. Content corresponding to the payload can be identified in the DOM object via the unique identifier. A section of the DOM object including the payload can be identified as un-trusted.
机译:测试基于Web的应用程序的安全漏洞。可以将包括具有唯一标识符的有效载荷的至少一个客户端请求传送到基于Web的应用程序。可以从基于Web的应用程序中接收响应HTML和关联的文档对象模型(DOM)对象。可以通过唯一标识符在DOM对象中标识与有效负载相对应的内容。可以将DOM对象的包含有效负载的部分标识为不可信。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号