|
|
Techniques and Tools for Engineering Secure Web Applications
– Gary Michael Wassermann
- 2008
|
|
1
|
Automating presentation changes in dynamic web applications via collaborative hybrid analysis
– Xiaoyin Wang, Lu Zhang, Tao Xie, Yingfei Xiong, Hong Mei
- 2012
|
|
2
|
Generating Vulnerability Signatures for String Manipulating Programs Using Automata-based Forward and Backward Symbolic Analyses
– Fang Yu, Muath Alkhalaf, Tevfik Bultan
|
|
21
|
Automatic creation of SQL injection and cross-site scripting attacks
– Adam Kiezun, Philip J. Guo, Karthick Jayaraman, Michael D. Ernst
|
|
|
Effective Software Testing with a String-Constraint Solver
– Michael D. Ernst
- 2009
|
|
39
|
HAMPI: A Solver for String Constraints
– Adam Kiezun, Vijay Ganesh, Philip J. Guo, Pieter Hooimeijer, Michael D. Ernst
- 2009
|
|
23
|
A Decision Procedure for Subset Constraints over Regular Languages
– Pieter Hooimeijer, Westley Weimer
- 2009
|
|
36
|
Static Detection of Cross-Site Scripting Vulnerabilities
– Gary Wassermann, Zhendong Su
- 2008
|
|
|
HAMPI: A String Solver for Testing, Analysis and Vulnerability Detection
– Vijay Ganesh, Shay Artzi, Philip J. Guo, Pieter Hooimeijer, Michael Ernst
|
|
|
Mitigating and Monitoring Program Security Vulnerabilities Area: Software Security
– Hossain Shahriar, Copyright Hossain Shahriar
- 2010
|
|
13
|
Fast and Precise Sanitizer Analysis with BEK
– Pieter Hooimeijer, Prateek Saxena, Benjamin Livshits, Margus Veanes, David Molnar
- 2011
|
|
|
BEK: Re-Envisioning . . .
– Pieter Hooimeijer, Benjamin Livshits, David Molnar, Prateek Saxena, Margus Veanes
- 2010
|
|
75
|
Sound and Precise Analysis of Web Applications for Injection Vulnerabilities
– Gary Wassermann, Zhendong Su
- 2007
|
|
6
|
Solving String Constraints Lazily
– Pieter Hooimeijer, Westley Weimer
- 2010
|
|
12
|
Symbolic string verification: An automata-based approach
– Fang Yu, Tevfik Bultan, Marco Cova, Oscar H. Ibarra
|
|
1
|
Static analysis for detecting taint-style vulnerabilities in web applications
– Nenad Jovanovic, Christopher Kruegel, Engin Kirda
- 2010
|
|
49
|
Saner: Composing Static and Dynamic Analysis to Validate Sanitization in Web Applications
– Davide Balzarotti, Marco Cova, Vika Felmetsger, Nenad Jovanovic, Engin Kirda, Christopher Kruegel, Giovanni Vigna
- 2007
|
|
6
|
Finding bugs in web applications using dynamic test generation and explicit state model checking
– Shay Artzi, Julian Dolby, Frank Tip, Danny Dig, Amit Paradkar, Senior Member, Michael D. Ernst
- 2010
|
|
|
TranStrL: An Automatic Need-to-Translate String Locator for Software
– Xiaoyin Wang, Lu Zhang, Tao Xie, Hong Mei, Jiasu Sun
|