|
13
|
Cross-Origin JavaScript Capability Leaks: Detection, Exploitation, and Defense
– Adam Barth, Joel Weinberger, Dawn Song
|
|
1
|
GULFSTREAM: Staged Static Analysis for Streaming JavaScript Applications
– Salvatore Guarnieri, Benjamin Livshits
|
|
|
Static
– Joe Gibbs, Politz Spiridon, Aristides Eliopoulos, Arjun Guha, Shriram Krishnamurthi
|
|
5
|
Gulfstream: Incremental Static Analysis for Streaming JavaScript Applications
– Benjamin Livshits, Salvatore Guarnieri
- 2010
|
|
|
Practical Static Analysis of JavaScript Applications in the Presence of Frameworks and Libraries
– Magnus Madsen, Benjamin Livshits, Michael Fanning
|
|
13
|
Analyzing Information Flow in JavaScript-based Browser Extensions
– Mohan Dhawan, Vinod Ganapathy
|
|
36
|
Static Detection of Cross-Site Scripting Vulnerabilities
– Gary Wassermann, Zhendong Su
- 2008
|
|
24
|
CONSCRIPT: Specifying and Enforcing Fine-Grained Security Policies for JavaScript in the Browser
– Benjamin Livshits, Leo Meyerovich
- 2009
|
|
|
AdJail: Practical Enforcement of Confidentiality and Integrity Policies on Web Advertisements
– Mike Ter, Louw Karthik, Thotta Ganesh, V. N. Venkatakrishnan
- 2009
|
|
|
13 AjaxScope: A Platform for Remotely Monitoring the Client-Side Behavior of Web 2.0 Applications
– Emre Kiciman, Benjamin Livshits
|
|
8
|
Isolating JavaScript with Filters, Rewriting, and Wrappers
– Sergio Maffeis, John C. Mitchell, Ankur Taly
|
|
15
|
Language-based isolation of untrusted Javascript
– Sergio Maffeis, Ankur Taly
- 2009
|
|
22
|
An Operational Semantics for JavaScript
– Sergio Maffeis, John C. Mitchell, Ankur Taly
|
|
|
Conditional correlation analysis for safe region-based memory management
– Xi Wang, Zhilei Xu, Xuezheng Liu, Zhenyu Guo, Xiaoge Wang, Zheng Zhang
- 2008
|
|
3
|
IMPROVING SOFTWARE SECURITY WITH PRECISE STATIC AND RUNTIME ANALYSIS
– Benjamin Livshits
- 2006
|
|
9
|
CONTEXT-SENSITIVE POINTER ANALYSIS USING BINARY DECISION DIAGRAMS
– John Whaley, Monica S. Lam
- 2007
|
|
12
|
OMash: enabling secure web mashups via object abstractions
– Steven Crites, Francis Hsu, Hao Chen
- 2008
|
|
5
|
Attacks on JavaScript Mashup Communication
– Adam Barth, Collin Jackson, William Li
|
|
1
|
Sharing Mobile Code Securely With Information Flow Control
– Owen Arden, Michael D. George, Jed Liu, K. Vikram, Aslan Askarov, Andrew C. Myers
|