Type-specific languages to fight injection attacks

Darya Kurilova, Benjamin Chung, Cyrus Omar, Alex Potanin, Ligia Nistor, Jonathan Aldrich

Research output: Chapter in Book/Report/Conference proceedingConference Paperpeer-review

Abstract

Injection vulnerabilities have topped rankings of the most critical web application vulnerabilities for several years [1, 2]. They can occur anywhere where user input may be erroneously executed as code. The injected input is typically aimed at gaining unauthorized access to the system or to private information within it, corrupting the system's data, or disturbing system availability. Injection vulnerabilities are tedious and difficult to prevent.

Original languageEnglish
Title of host publicationProceedings of the 2014 Symposium and Bootcamp on the Science of Security, HotSoS 2014
Place of PublicationNew York
PublisherAssociation for Computing Machinery (ACM)
Number of pages2
ISBN (Print)9781450329071
DOIs
Publication statusPublished - 8 Apr 2014
Externally publishedYes
Event2014 Symposium and Bootcamp on the Science of Security, HotSoS 2014 - Raleigh, NC, United States
Duration: 8 Apr 20149 Apr 2014

Publication series

NameACM International Conference Proceeding Series

Conference

Conference2014 Symposium and Bootcamp on the Science of Security, HotSoS 2014
Country/TerritoryUnited States
CityRaleigh, NC
Period8/04/149/04/14

Fingerprint

Dive into the research topics of 'Type-specific languages to fight injection attacks'. Together they form a unique fingerprint.

Cite this