Secure Cooperative Sharing of JavaScript, Browser, and Physical Resources

نویسندگان

  • Leo A. Meyerovich
  • David Zhu
  • Benjamin Livshits
چکیده

For better application-level controls on mashups, we advocate extending the Single Origin Policy and associated primitives to support a cooperative model that allows applications to express explicit sharing policies over browser, Javascript, and physical resources. First, we introduce an isolation model for content loading that is more complete than those of surveyed browser proposals. Second, we present new primitives to enable an application to secure its use of untrusted content by delegating browser, JavaScript, and physical resources in a fine-grained and reliable manner. Finally, essential to adoption, we propose an architecture based on designs for related abstractions with low performance and implementation costs.

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

JavaScript: Bringing Object-Level Security to the Browser

JavaScript has evolved from a simple language intended to give web browsers basic interaction into a fully featured dynamic language that allows the browser to become an application delivery platform. With innovations such as asynchronous JavaScript and XML (AJAX) and JavaScript Object Notation (JSON), JavaScript has become the de facto standard for creating interactive web applications. With i...

متن کامل

Web Browser Security: Different Attacks Detection and Prevention Techniques

In this paper, we present a systematic study of how to make a browser secure. Web browser is vulnerable to different attacks; these attacks are performed due to vulnerabilities in the UI of the web page, Browser cache memory, extensions, plug-in. The Attacker can run malicious JavaScript to exploit user system by using these vulnerabilities. Buffer overflow attack, Cross-site-scripting, Man-in-...

متن کامل

Research and Design of an Agricultural Scientific Instruments Classification and Code Management System

As China enlarged the investment in agriculture, the agricultural scientific instruments promoted rapidly. It required us to face the questions scientifically such as the procurement, management, resources sharing, evaluation and etc. in agricultural scientific instruments. Because of the lack of unified classification and code standards, it greatly limited the scientific procurement, efficient...

متن کامل

Research.js: Sharing Your Research on the Web Full Presentation

Most research tools are publicly available but rarely used due to the difficulty of building them, which hinders the sharing of ideas. However, web browsers have recently become an excellent platform for giving portable demos. Researchers could enable their tools to run on a web browser by compiling them into JavaScript. Making tools accessible on the web would facilitate trying new tools witho...

متن کامل

TabSecure: An Anti-Phishing Solution with Protection against Tabnabbing

With an upsurge in the use of internet, there are various attacks being launched every day. These attacks target the vulnerabilities of various computer resources, such as, the operating system, web browsers, toolbars, etc. along with the susceptibility of the users due to lack of awareness about the possible scams. The existing solutions suffer various drawbacks. The website phishing solutions...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2010