Coping with denial of service due to malicious Java applets
A monitoring application, called (Signed) Applet Watch-Dog, is proposed to control the execution of malicious Java applets that users can (download and) execute during Web surfing. Typical security attacks that the monitor can stop are related to denial-of-service and antagonism (e.g. obscuring the...
Gespeichert in:
Veröffentlicht in: | Computer communications 2000-11, Vol.23 (17), p.1645-1654 |
---|---|
Hauptverfasser: | , , |
Format: | Artikel |
Sprache: | eng |
Schlagworte: | |
Online-Zugang: | Volltext |
Tags: |
Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
|
Zusammenfassung: | A monitoring application, called (Signed)
Applet Watch-Dog, is proposed to control the execution of malicious Java applets that users can (download and) execute during Web surfing. Typical security attacks that the monitor can stop are related to denial-of-service and antagonism (e.g. obscuring the screen), at the price of a modest degradation of the performance of the Web browser. The Applet Watch-Dog described here is the second release, improving over the original version presented in R. Gorrieri, G. Marchetti (Applet Watch-Dog: a monitor controlling the execution of Java applets, in: G. Papp, R. Posch (Eds.), Proceedings of Fourteenth IFIP International Information Security Conference (SEC’98), Chapman & Hall, London, September 1998). The application is a signed Java applet, to be executed outside of the sandbox, simple to use and easily configurable by the user, because it works like a user interface. Signed Applet Watch-Dog seems also a necessary tool for software development environments for Java applets. |
---|---|
ISSN: | 0140-3664 1873-703X |
DOI: | 10.1016/S0140-3664(00)00251-6 |