Matches in ScholarlyData for { <https://w3id.org/scholarlydata/inproceedings/www2008/paper/332> ?p ?o. }
Showing items 1 to 18 of
18
with 100 items per page.
- 332 creator frederik-de-keukelaere.
- 332 creator michael-steiner.
- 332 creator sachiko-yoshihama.
- 332 creator sumeer-bhola.
- 332 creator suresh-chari.
- 332 type InProceedings.
- 332 label "SMash: Secure Component Model for Cross-Domain Mashups on Unmodified Browsers".
- 332 sameAs 332.
- 332 abstract "Mashup applications mix and merge content (data and code) from multiple content providers in a user's browser, to provide high-value web applications that can rival the user experience provided by desktop applications. Current browser security models were not designed to support such applications and they are therefore implemented with insecure workarounds. In this paper, we present a secure component model, where components are provided by different trust domains, and can interact using a communication abstraction that allows ease of specification of a security policy. We have developed an implementation of this model that works currently in all major browsers, and addresses challenges of communication integrity and frame-phishing. An evaluation of the performance of our implementation shows that this approach is not just feasible but also practical.".
- 332 hasAuthorList authorList.
- 332 hasTopic World_Wide_Web.
- 332 isPartOf proceedings.
- 332 keyword "Web 2.0".
- 332 keyword "component model".
- 332 keyword "isolation".
- 332 keyword "phishing".
- 332 keyword "security".
- 332 title "SMash: Secure Component Model for Cross-Domain Mashups on Unmodified Browsers".