2016
DOI: 10.1007/978-3-319-43005-8_2
|View full text |Cite
|
Sign up to set email alerts
|

JavaScript Sandboxing: Isolating and Restricting Client-Side JavaScript

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
1
1

Citation Types

0
2
0

Year Published

2016
2016
2022
2022

Publication Types

Select...
4
1

Relationship

0
5

Authors

Journals

citations
Cited by 6 publications
(2 citation statements)
references
References 19 publications
0
2
0
Order By: Relevance
“…As future work, we plan to extend Bulwark to add an additional protection layer, i.e., on client-side communication based on JavaScript and the postMessage API. This is important to support modern SDKs making heavy use of these technologies, like the latest versions of the PayPal SDKs, yet challenging given the complexity of sandboxing JavaScript code [3]. On the formal side, we would like to strengthen our definition of "inattentive" participant to cover additional vulnerabilities besides missing invariant checks.…”
Section: Discussionmentioning
confidence: 99%
See 1 more Smart Citation
“…As future work, we plan to extend Bulwark to add an additional protection layer, i.e., on client-side communication based on JavaScript and the postMessage API. This is important to support modern SDKs making heavy use of these technologies, like the latest versions of the PayPal SDKs, yet challenging given the complexity of sandboxing JavaScript code [3]. On the formal side, we would like to strengthen our definition of "inattentive" participant to cover additional vulnerabilities besides missing invariant checks.…”
Section: Discussionmentioning
confidence: 99%
“…1, we selected a widely used web protocol, namely OAuth 2.0 in explicit mode, which allows a RP to leverage a TTP for authenticating a user operating a UA. 3 The protocol starts (step 1) with the UA visiting the RP's login page. A login button is provided back that, when clicked, triggers a request to the TTP (steps 2-3).…”
Section: Motivating Examplementioning
confidence: 99%