• Title of article

    Current state of research on cross-site scripting (XSS) – A systematic literature review

  • Author/Authors

    Hydara، نويسنده , , Isatou and Sultan، نويسنده , , Abu Bakar Md. and Zulzalil، نويسنده , , Hazura and Admodisastro، نويسنده , , Novia، نويسنده ,

  • Issue Information
    ماهنامه با شماره پیاپی سال 2015
  • Pages
    17
  • From page
    170
  • To page
    186
  • Abstract
    AbstractContext site scripting (XSS) is a security vulnerability that affects web applications. It occurs due to improper or lack of sanitization of user inputs. The security vulnerability caused many problems for users and server applications. ive duct a systematic literature review on the studies done on XSS vulnerabilities and attacks. lowed the standard guidelines for systematic literature review as documented by Barbara Kitchenham and reviewed a total of 115 studies related to cross-site scripting from various journals and conference proceedings. s ch on XSS is still very active with publications across many conference proceedings and journals. Attack prevention and vulnerability detection are the areas focused on by most of the studies. Dynamic analysis techniques form the majority among the solutions proposed by the various studies. The type of XSS addressed the most is reflected XSS. sion ill remains a big problem for web applications, despite the bulk of solutions provided so far. There is no single solution that can effectively mitigate XSS attacks. More research is needed in the area of vulnerability removal from the source code of the applications before deployment.
  • Keywords
    web applications , security , Cross-site scripting , Systematic literature review
  • Journal title
    Information and Software Technology
  • Serial Year
    2015
  • Journal title
    Information and Software Technology
  • Record number

    2375381