Analysis and suggestions for the security of web applications
Yu You, Yuanyuan Yang, Jian Gu, Liang Chi Shen · 2011
As an essential and significant part of network security, the security of web applications has received more and more attentions at present. In this paper, we review the security of current web applications, and enumerate the most common attacks on them such as injection, cross site scripting, and insecure direct object references. Then by taking injection attack as an example, we explain the principles of injection attack and analyze the reasons for the vulnerability. Finally, to prevent these attacks, we provide several valuable suggestions.