The limitations of cross-site scripting vulnerabilities detection and removal techniques

Web applications have become very important tools in our daily activities as we use them to share and get information, conduct businesses, and interact with family and friends on social media through the Internet. Despite their importance, web applications are plagued with many security vulnerabili...

Full description

Bibliographic Details
Main Authors: Hydara, Isatou, Md Sultan, Abu Bakar, Zulzalil, Hazura, Admodisastro, Novia
Format: Article
Language:English
Published: Karadeniz Technical University 2021
Online Access:http://psasir.upm.edu.my/id/eprint/95515/1/The%20limitations%20of%20cross-site%20scripting%20vulnerabilities%20detection%20and%20removal%20techniques.pdf
_version_ 1825937588092928000
author Hydara, Isatou
Md Sultan, Abu Bakar
Zulzalil, Hazura
Admodisastro, Novia
author_facet Hydara, Isatou
Md Sultan, Abu Bakar
Zulzalil, Hazura
Admodisastro, Novia
author_sort Hydara, Isatou
collection UPM
description Web applications have become very important tools in our daily activities as we use them to share and get information, conduct businesses, and interact with family and friends on social media through the Internet. Despite their importance, web applications are plagued with many security vulnerabilities that enable hackers to attack them and compromise user information and privacy. Cross-site scripting vulnerabilities are a type of injection vulnerabilities existing in web applications. They can lead to attacks in web applications due to the lack of proper validation of input data in the affected web pages of an application. Many approaches and techniques have been proposed to mitigate this type of vulnerabilities. However, these solutions have some limitations and cross-site scripting vulnerabilities still remain as a major security problem for web applications. This paper explores and presents the existing techniques for detecting and for removing cross-site scripting vulnerabilities in web application. It gives an overview of cross-site scripting as a security issue in web application and its different types. The advantages as well as the limitations of each techniques are highlighted and discussed. Based on the limitations, some possible future research directions are identified, and recommendations are given as reference for researchers interested in this topic.
first_indexed 2024-03-06T11:01:47Z
format Article
id upm.eprints-95515
institution Universiti Putra Malaysia
language English
last_indexed 2024-03-06T11:01:47Z
publishDate 2021
publisher Karadeniz Technical University
record_format dspace
spelling upm.eprints-955152022-08-22T06:41:01Z http://psasir.upm.edu.my/id/eprint/95515/ The limitations of cross-site scripting vulnerabilities detection and removal techniques Hydara, Isatou Md Sultan, Abu Bakar Zulzalil, Hazura Admodisastro, Novia Web applications have become very important tools in our daily activities as we use them to share and get information, conduct businesses, and interact with family and friends on social media through the Internet. Despite their importance, web applications are plagued with many security vulnerabilities that enable hackers to attack them and compromise user information and privacy. Cross-site scripting vulnerabilities are a type of injection vulnerabilities existing in web applications. They can lead to attacks in web applications due to the lack of proper validation of input data in the affected web pages of an application. Many approaches and techniques have been proposed to mitigate this type of vulnerabilities. However, these solutions have some limitations and cross-site scripting vulnerabilities still remain as a major security problem for web applications. This paper explores and presents the existing techniques for detecting and for removing cross-site scripting vulnerabilities in web application. It gives an overview of cross-site scripting as a security issue in web application and its different types. The advantages as well as the limitations of each techniques are highlighted and discussed. Based on the limitations, some possible future research directions are identified, and recommendations are given as reference for researchers interested in this topic. Karadeniz Technical University 2021 Article PeerReviewed text en http://psasir.upm.edu.my/id/eprint/95515/1/The%20limitations%20of%20cross-site%20scripting%20vulnerabilities%20detection%20and%20removal%20techniques.pdf Hydara, Isatou and Md Sultan, Abu Bakar and Zulzalil, Hazura and Admodisastro, Novia (2021) The limitations of cross-site scripting vulnerabilities detection and removal techniques. Turkish Journal of Computer and Mathematics Education, 12 (3). 1975- 1980. ISSN 1309-4653 https://www.turcomat.org/index.php/turkbilmat/article/view/1033 10.17762/turcomat.v12i3.1033
spellingShingle Hydara, Isatou
Md Sultan, Abu Bakar
Zulzalil, Hazura
Admodisastro, Novia
The limitations of cross-site scripting vulnerabilities detection and removal techniques
title The limitations of cross-site scripting vulnerabilities detection and removal techniques
title_full The limitations of cross-site scripting vulnerabilities detection and removal techniques
title_fullStr The limitations of cross-site scripting vulnerabilities detection and removal techniques
title_full_unstemmed The limitations of cross-site scripting vulnerabilities detection and removal techniques
title_short The limitations of cross-site scripting vulnerabilities detection and removal techniques
title_sort limitations of cross site scripting vulnerabilities detection and removal techniques
url http://psasir.upm.edu.my/id/eprint/95515/1/The%20limitations%20of%20cross-site%20scripting%20vulnerabilities%20detection%20and%20removal%20techniques.pdf
work_keys_str_mv AT hydaraisatou thelimitationsofcrosssitescriptingvulnerabilitiesdetectionandremovaltechniques
AT mdsultanabubakar thelimitationsofcrosssitescriptingvulnerabilitiesdetectionandremovaltechniques
AT zulzalilhazura thelimitationsofcrosssitescriptingvulnerabilitiesdetectionandremovaltechniques
AT admodisastronovia thelimitationsofcrosssitescriptingvulnerabilitiesdetectionandremovaltechniques
AT hydaraisatou limitationsofcrosssitescriptingvulnerabilitiesdetectionandremovaltechniques
AT mdsultanabubakar limitationsofcrosssitescriptingvulnerabilitiesdetectionandremovaltechniques
AT zulzalilhazura limitationsofcrosssitescriptingvulnerabilitiesdetectionandremovaltechniques
AT admodisastronovia limitationsofcrosssitescriptingvulnerabilitiesdetectionandremovaltechniques