Protecting web applications via Unicode extension

Boze Zekan, Mark Shtern, Vassilios Tzerpos · 2015

Protecting web applications against security attacks, such as command injection, is an issue that has been attracting increasing attention as such attacks are becoming more prevalent. Taint tracking is an approach that achieves protection while offering significant maintenance benefits when implemented at the language library level. This allows the transparent re-engineering of legacy web applications without the need to modify their source code. Such an approach can be implemented at either the string or the character level.

Read the paper · More papers on PaperTik