News

CRISP-researchers publish paper at NDSS`18

27/10/2017

Success at renowned Security-Conference

The paper "Understanding and Automatically Preventing Injection Attacks on Node.js", written by Prof. Michael Pradel and Cristian-Alexandru Staicu, both CYSEC [at] TU Darmstadt, in collaboration with Ben Livshits, Microsoft Research / Imperial College London, will be published at the Network and Distributed System Security Symposium (NDSS) 2018.

As JavaScript is getting more and more popular for server-side web applications, its security is a crucial concern. The researchers have studied over 230,000 JavaScript code modules and found that many of them are vulnerable to code injection attacks, which allow an attacker to take full control of the underlying machine. To prevent such attacks, the researchers developed a technique to not only detect injection vulnerabilities but to also fix them automatically. A paper on this work will appear at NDSS'18, one of the top security conferences, which will take place in San Diego, California. 

Information about NDSS`18

show all news