nanoll extt
Please use this identifier to cite or link to this item: http://lrcdrs.bennett.edu.in:80/handle/123456789/933
Title: Cross Channel Scripting and Code Injection Attacks on Web and Cloud-Based Applications: A Comprehensive Review
Authors: M., Indushree
Keywords: XSS
Attack vector
Cross channel scripting
Scanners
Web application security.
Issue Date: Mar-2022
Series/Report no.: Vol. 22;Issue 5
Abstract: Cross channel scripting (XCS) is a common web application vulnerability, which is a variant of a cross-site scripting (XSS) attack. An XCS attack vector can be injected through network protocol and smart devices that have web interfaces such as routers, photo frames, and cameras. In this attack scenario, the network devices allow the web administrator to carry out various functions related to accessing the web content from the server. After the injection of malicious code into web interfaces, XCS attack vectors can be exploited in the client browser. In addition, scripted content can be injected into the networked devices through various protocols, such as network file system, file transfer protocol (FTP), and simple mail transfer protocol. In this paper, various computational techniques deployed at the client and server sides for XCS detection and mitigation are analyzed. Various web application scanners have been discussed along with specific features. Various computational tools and approaches with their respective characteristics are also discussed. Finally, shortcomings and future directions related to the existing computational techniques for XCS are presented.
URI: https://pubmed.ncbi.nlm.nih.gov/35271112/
http://lrcdrs.bennett.edu.in:80/handle/123456789/933
ISSN: 1424-8220
Appears in Collections:Book Review_ SCSET

Files in This Item:
File Description SizeFormat 
Cross Channel Scripting and Code Injection Attacks on Web.pdf
  Restricted Access
459.82 kBAdobe PDFView/Open Request a copy

Contact admin for Full-Text

Items in DSpace are protected by copyright, with all rights reserved, unless otherwise indicated.