題名: Digital Evidence Seizure in Network Intrusions against Cyber-crime on Internet Systems
其他題名: Department of Information Management
Information Office at Changhua Police Bureau
作者: Wang, Shiuh-Jeng
Chang, Yao-Han
Ke, Hung-Jui
Juang, Wen-Shenq
關鍵字: Forensics and Evidence
internet attacks
website systems
XSS(Cross Site Scripting)
摘要: With the global trend of internet, many companies set up websites for international recognition and marketing. However, the hackers and potential attackers lurk on internet. More and more web attack methods have invented and threat these vulnerable websites. Recently, the “Code Injection” has become the major problem, such as SQL Injection, ASP Injection, PHP Injection and XSS (Cross Site Scripting) attack. The victims include the biggest Blog “Wrench” in Taiwan and the largest friend’s community website “MySpace” in the world. In this paper, we will analyze the XSS attack and propose a scheme to collect evidence on network systems after XSS attack. We also propose our management strategy against XSS attack.
日期: 2008-11-12T06:52:33Z
分類:Journal of Computers第18卷

文件中的檔案:
檔案 描述 大小格式 
JOC_18_4_7.pdf581.8 kBAdobe PDF檢視/開啟


在 DSpace 系統中的文件,除了特別指名其著作權條款之外,均受到著作權保護,並且保留所有的權利。