Towards full protection of web applications based on Aspect Oriented Programming

Dr.Elinda Kajo Mece
Dr.Elinda Kajo Mece
Dr. Elinda Kajo Mece
Dr. Elinda Kajo Mece
Lorena Kodra
Lorena Kodra
to Polytechnic University of Tirana Polytechnic University of Tirana

Send Message

To: Author

Towards full protection of web applications based on Aspect Oriented Programming

Article Fingerprint

ReserarchID

Z5SYF

Towards full protection of web applications based on Aspect Oriented Programming Banner

AI TAKEAWAY

Connecting with the Eternal Ground
  • English
  • Afrikaans
  • Albanian
  • Amharic
  • Arabic
  • Armenian
  • Azerbaijani
  • Basque
  • Belarusian
  • Bengali
  • Bosnian
  • Bulgarian
  • Catalan
  • Cebuano
  • Chichewa
  • Chinese (Simplified)
  • Chinese (Traditional)
  • Corsican
  • Croatian
  • Czech
  • Danish
  • Dutch
  • Esperanto
  • Estonian
  • Filipino
  • Finnish
  • French
  • Frisian
  • Galician
  • Georgian
  • German
  • Greek
  • Gujarati
  • Haitian Creole
  • Hausa
  • Hawaiian
  • Hebrew
  • Hindi
  • Hmong
  • Hungarian
  • Icelandic
  • Igbo
  • Indonesian
  • Irish
  • Italian
  • Japanese
  • Javanese
  • Kannada
  • Kazakh
  • Khmer
  • Korean
  • Kurdish (Kurmanji)
  • Kyrgyz
  • Lao
  • Latin
  • Latvian
  • Lithuanian
  • Luxembourgish
  • Macedonian
  • Malagasy
  • Malay
  • Malayalam
  • Maltese
  • Maori
  • Marathi
  • Mongolian
  • Myanmar (Burmese)
  • Nepali
  • Norwegian
  • Pashto
  • Persian
  • Polish
  • Portuguese
  • Punjabi
  • Romanian
  • Russian
  • Samoan
  • Scots Gaelic
  • Serbian
  • Sesotho
  • Shona
  • Sindhi
  • Sinhala
  • Slovak
  • Slovenian
  • Somali
  • Spanish
  • Sundanese
  • Swahili
  • Swedish
  • Tajik
  • Tamil
  • Telugu
  • Thai
  • Turkish
  • Ukrainian
  • Urdu
  • Uzbek
  • Vietnamese
  • Welsh
  • Xhosa
  • Yiddish
  • Yoruba
  • Zulu
Font Type
Font Size
Font Size
Bedground

Abstract

Web application security is a critical issue. Security concerns are often scattered through different parts of the system. Aspect oriented programming is a programming paradigm that provides explicit mechanisms to modularize these concerns. In this paper we present a technique for detecting and preventing common attacks in web applications like Cross Site Scripting (XSS) and SQL Injection using an aspect oriented approach by analyzing and validating user input strings. We use an aspect to capture input strings and compare them to predefined patterns. The intrusion detection aspect is implemented in AspectJ and is woven into the target system. The resulting system has the ability to detect malicious user input and prevent SQL Injection and Cross Site Scripting. We present an experimental evaluation by applying it to an insecure web application. The results of our tests show that our technique was able to detect all the attempted attacks without generating any false positives.

References

9 Cites in Article
  1. M Dimitris,Diomidis Spinellis (2009). SDriver: Location-specific signatures prevent SQL injection attacks.
  2. J Zhi,Z Mohammad (2009). A model-based aspect-oriented framework for building intrusionaware software systems.
  3. H Gabriel,G Roberto,S Lionel,D Laurence (2007). AProSec: An aspect for programming secure web applications.
  4. K Engin,J Nenad,K Christopher,V Giovanni (2009). Client-side cross-site scripting protection.
  5. M Matias,L Edward,W Jacob,C Brian (2008). Watch What You Write: Preventing Cross-Site Scripting by Observing Program Output.
  6. J Etienne,Z Pavol (2008). Information technology. Database languages SQL.
  7. AspectJ.
  8. Muhammad Amin,Saqib Saeed (2015). Role of Usability in E-Learning System.
  9. Sai Matam,Jagdeep Jain (2017). JMeter Test Script Recorder.

Funding

No external funding was declared for this work.

Conflict of Interest

The authors declare no conflict of interest.

Ethical Approval

No ethics committee approval was required for this article type.

Data Availability

Not applicable for this article.

How to Cite This Article

Dr.Elinda Kajo Mece. 1970. \u201cTowards full protection of web applications based on Aspect Oriented Programming\u201d. Unknown Journal GJCST Volume 12 (GJCST Volume 12 Issue 1).

Download Citation

Journal Specifications
Version of record

v1.2

Issue date
January 15, 2012

Language
en
Experiance in AR

Explore published articles in an immersive Augmented Reality environment. Our platform converts research papers into interactive 3D books, allowing readers to view and interact with content using AR and VR compatible devices.

Read in 3D

Your published article is automatically converted into a realistic 3D book. Flip through pages and read research papers in a more engaging and interactive format.

Article Matrices
Total Views: 20992
Total Downloads: 10989
2026 Trends
Related Research
Our website is actively being updated, and changes may occur frequently. Please clear your browser cache if needed. For feedback or error reporting, please email [email protected]

Request Access

Please fill out the form below to request access to this research paper. Your request will be reviewed by the editorial or author team.
X

Quote and Order Details

Contact Person

Invoice Address

Notes or Comments

This is the heading

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Ut elit tellus, luctus nec ullamcorper mattis, pulvinar dapibus leo.

High-quality academic research articles on global topics and journals.

Towards full protection of web applications based on Aspect Oriented Programming

Dr. Elinda Kajo Mece
Dr. Elinda Kajo Mece
Lorena Kodra
Lorena Kodra <p>Polytechnic University of Tirana</p>

Research Journals