• DocumentCode
    2294856
  • Title

    Security Against Malicious Code in Web Based Applications

  • Author

    Kulkarni, Yogini A. ; Kaduskar, Rajendra G.

  • Author_Institution
    Dept. of Comput. Eng., PVG´´s COET, Pune, India
  • fYear
    2010
  • fDate
    19-21 Nov. 2010
  • Firstpage
    286
  • Lastpage
    291
  • Abstract
    Malicious code is any code added, changed, or removed from a software system in order to intentionally cause harm or subvert the intended function of the system. Though the problem of malicious code has a long history, a number of recent, widely publicized attacks and certain economic trends suggest that malicious code is rapidly becoming a critical problem for industry, government, and individuals. Once inside your network or workstation malicious code can enter network drives and propagate. However, just like pickpockets, online scammers follow the crowds. Given the ever-increasing number of people who use Face book, My Space, Linked In, Twitter and other social networking sites, it´s no surprise that cyber criminals are increasingly targeting these services. They may use hacked Face book accounts to send out messages containing links to malicious programs. Or send out `tweets´ containing links, but concealing the real destination by using a URL shortening service. Or they may simply masquerade as a friend stranded in a far-off country that is in desperate need of funds to get home. In this paper the authentic web transaction issues are discussed in connection with web sites. In these URL transactions: alphabets, logos, legitimate followers, flash applications and PDF are considered so as to detect malicious code and to provide the security against it. This paper further deals with two levels of security one for address translation and second for the data formats.
  • Keywords
    invasive software; social networking (online); Facebook; Linked In; MySpace; Twitter; URL transactions; Web based application; malicious code security; social networking; Code detection; Crime ware tool kit; Malicious code; Web application; flash applications;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Emerging Trends in Engineering and Technology (ICETET), 2010 3rd International Conference on
  • Conference_Location
    Goa
  • ISSN
    2157-0477
  • Print_ISBN
    978-1-4244-8481-2
  • Electronic_ISBN
    2157-0477
  • Type

    conf

  • DOI
    10.1109/ICETET.2010.53
  • Filename
    5698336