Coping with denial of service due to malicious Java applets

A monitoring application, called (Signed) Applet Watch-Dog, is proposed to control the execution of malicious Java applets that users can (download and) execute during Web surfing. Typical security attacks that the monitor can stop are related to denial-of-service and antagonism (e.g. obscuring the...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Veröffentlicht in:Computer communications 2000-11, Vol.23 (17), p.1645-1654
Hauptverfasser: Florio, M.F, Gorrieri, R, Marchetti, G
Format: Artikel
Sprache:eng
Schlagworte:
Online-Zugang:Volltext
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
Beschreibung
Zusammenfassung:A monitoring application, called (Signed) Applet Watch-Dog, is proposed to control the execution of malicious Java applets that users can (download and) execute during Web surfing. Typical security attacks that the monitor can stop are related to denial-of-service and antagonism (e.g. obscuring the screen), at the price of a modest degradation of the performance of the Web browser. The Applet Watch-Dog described here is the second release, improving over the original version presented in R. Gorrieri, G. Marchetti (Applet Watch-Dog: a monitor controlling the execution of Java applets, in: G. Papp, R. Posch (Eds.), Proceedings of Fourteenth IFIP International Information Security Conference (SEC’98), Chapman & Hall, London, September 1998). The application is a signed Java applet, to be executed outside of the sandbox, simple to use and easily configurable by the user, because it works like a user interface. Signed Applet Watch-Dog seems also a necessary tool for software development environments for Java applets.
ISSN:0140-3664
1873-703X
DOI:10.1016/S0140-3664(00)00251-6