发明名称 PREVENTION OF CROSS SITE SCRIPTING ATTACKS USING AUTOMATIC GENERATION OF CONTENT SECURITY POLICY HEADERS AND SPLITTING OF CONTENT TO ENABLE CONTENT SECURITY POLICY ENFORCEMENT
摘要 The present disclosure provides a method and system for transforming web application output that is vulnerable to XSS attacks to CSP-compliant web application output. This transformation is accomplished by parsing the output code to identify headers and script and splitting the headers and script to form CSP-compliant web application output.
申请公布号 WO2016041084(A1) 申请公布日期 2016.03.24
申请号 WO2015CA50912 申请日期 2015.09.18
申请人 IMMUN.IO INC. 发明人 MACDERMID, KENNY
分类号 G06F21/54;H04L12/16 主分类号 G06F21/54
代理机构 代理人
主权项
地址