Web Application Security: A Pragmatic Expose

被引:0
作者
Aladi, Clement C. [1 ]
机构
[1] Claremont Grad Univ, 150 E 10th St, Claremont, CA 91711 USA
来源
DIGITAL THREATS: RESEARCH AND PRACTICE | 2024年 / 5卷 / 02期
关键词
Web application; web security; web attacks; vulnerabilities web defense; ATTACKS;
D O I
10.1145/3644394
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Many individuals, organizations, and industries rely on web applications for the daily operations of their businesses. With the increasing deployment and dependence on these applications, significant attention has been directed toward developing more accurate and secure mechanisms to safeguard them from malicious web-based attacks. The slow adoption of the latest security protocols, coupled with the utilization of inaccurate and inadequately tested security measures, has hindered the establishment of efficient and effective security measures for web apps. This article reviews recent research and their recommendations for web security over the last 4 years. It identifies code injection as one of the recent most prevalent web-based attacks. The recommendations presented in this article offer a practical guide, enabling individuals and security personnel across various industries and organizations to implement tested and proven security measures for web applications. Further-more, it serves as a roadmap for security developers, aiding them in creating more accurate and quantifiable measures and mechanisms for web security.
引用
收藏
页数:9
相关论文
共 13 条
  • [1] Agreindra Helmiawan M., 2020, 2020 8 INT C CYB IT, P1, DOI [10.1109/CITSM50537.2020.9268856, DOI 10.1109/CITSM50537.2020.9268856]
  • [2] [Anonymous], Gigamon Threatinsight
  • [3] An Intrusion Detection System for Web-Based Attacks Using IBM Watson
    da Silva, Ricardo C. C.
    Camargo, Marcos P. de O.
    Quessada, Matheus S.
    Lopes, Anderson C.
    Ernesto, Jacinto D. M.
    da Costa, Kelton A. P.
    [J]. IEEE LATIN AMERICA TRANSACTIONS, 2022, 20 (02) : 191 - 197
  • [4] Gincy Mol AG, 2020, about us
  • [5] Effective Filter for Common Injection Attacks in Online Web Applications
    Ibarra-Fiallos, Santiago
    Higuera, Javier Bermejo
    Intriago-Pazmino, Monserrate
    Higuera, Juan Ramon Bermejo
    Montalvo, Juan Antonio Sicilia
    Cubo, Javier
    [J]. IEEE ACCESS, 2021, 9 (09): : 10378 - 10391
  • [6] What Email Servers Can Tell to Johnny: An Empirical Study of Provider-to-Provider Email Security
    Kambourakis, Georgios
    Gil, Gerard Draper
    Sanchez, Ignacio
    [J]. IEEE ACCESS, 2020, 8 (08): : 130066 - 130081
  • [7] Khari M., 2016, COMPREHENSIVE STUDY
  • [8] Kubota Kohei, 2020, 2020 Eighth International Symposium on Computing and Networking Workshops (CANDARW), P334, DOI 10.1109/CANDARW51189.2020.00071
  • [9] SecureWeb: Protecting Sensitive Information Through the Web Browser Extension with a Security Token
    Liang, Shuang
    Zhang, Yue
    Li, Bo
    Guo, Xiaojie
    Jia, Chunfu
    Liu, Zheli
    [J]. TSINGHUA SCIENCE AND TECHNOLOGY, 2018, 23 (05) : 526 - 538
  • [10] Defending Against Web Application Attacks: Approaches, Challenges and Implications
    Mitropoulos, Dimitris
    Louridas, Panos
    Polychronakis, Michalis
    Keromytis, Angelos Dennis
    [J]. IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2019, 16 (02) : 188 - 203