2012
DOI: 10.1007/978-3-642-27937-9_16
|View full text |Cite
|
Sign up to set email alerts
|

Security of Web Mashups: A Survey

Abstract: Web mashups, a new web application development paradigm, combine content and services from multiple origins into a new service. Web mashups heavily depend on interaction between content from multiple origins and communication with different origins. Contradictory, mashup security relies on separation for protecting code and data. Traditional HTML techniques fail to address both the interaction/communication needs and the separation needs. This paper proposes concrete requirements for building secure mashups, d… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
4
1

Citation Types

0
20
0

Year Published

2012
2012
2018
2018

Publication Types

Select...
5
3

Relationship

0
8

Authors

Journals

citations
Cited by 23 publications
(20 citation statements)
references
References 17 publications
(15 reference statements)
0
20
0
Order By: Relevance
“…Unfortunately, this is usually the case: many mashup developers today [14] don't have enough knowledge to take security issues into account when they implement mashups [10,32]. Poorly implemented mashup applications provide a great opportunity for hackers.…”
Section: B Secure Enterprise Mashupsmentioning
confidence: 99%
See 1 more Smart Citation
“…Unfortunately, this is usually the case: many mashup developers today [14] don't have enough knowledge to take security issues into account when they implement mashups [10,32]. Poorly implemented mashup applications provide a great opportunity for hackers.…”
Section: B Secure Enterprise Mashupsmentioning
confidence: 99%
“…Despite these benefits, there are many security and privacy concerns associated with Web mashups. In particular, security is a big concern for enterprise mashups [10,11,12,13]. Many mashup applications often include components from third parties.…”
Section: Introductionmentioning
confidence: 99%
“…A recent survey of the area [38] identifies a number of approaches ranging from isolation of components to their full integration. The focus of this paper is tight yet secure integration for scenarios when isolation is too restrictive and full integration is insecure.…”
Section: Introductionmentioning
confidence: 99%
“…The state of the art in web mashup security [24] leaves the question open. A range of approaches from separation to full integration has been suggested, tailored to web mashup scenarios such as online ads, where access-control policies are sufficient.…”
Section: Introductionmentioning
confidence: 99%