跳到主要导航 跳到搜索 跳到主要内容

Detecting Malicious Behaviors in JavaScript Applications

  • Jian Mao*
  • , Jingdong Bian
  • , Guangdong Bai
  • , Ruilong Wang
  • , Yue Chen
  • , Yinhao Xiao
  • , Zhenkai Liang
  • *此作品的通讯作者
  • Beihang University
  • Singapore Institute of Technology
  • George Washington University
  • National University of Singapore

科研成果: 期刊稿件文章同行评审

摘要

JavaScript applications are widely used in a range of scenarios, including Web applications, mobile applications, and server-side applications. On one hand, due to its excellent cross-platform support, Javascript has become the core technology of social network platforms. On the other hand, the flexibility of the JavaScript language makes such applications prone to attacks that inject malicious behaviors. In this paper, we propose a detection technique to identify malicious behaviors in JavaScript applications. Our method models an application's normal behavior on function activation, which is used as a basis to detect attacks. We prototyped our solution on the popular JavaScript engine V8 and used it to detect attacks on the android system. Our evaluation shows the effectiveness of our approach in detecting injection attacks to JavaScript applications.

源语言英语
页(从-至)12284-12294
页数11
期刊IEEE Access
6
DOI
出版状态已出版 - 17 1月 2018

指纹

探究 'Detecting Malicious Behaviors in JavaScript Applications' 的科研主题。它们共同构成独一无二的指纹。

引用此