Showing cs.CRShow all
3 papers · 1 filter
cs.CR2022
Context-Auditor: Context-sensitive Content Injection Mitigation
Faezeh Kalantari, Mehrnoosh Zaeifi, Tiffany Bao +3
Cross-site scripting (XSS) is the most common vulnerability class in web applications over the last decade. Much research attention has focused on building exploit mitigation defen…
cs.CR2021
Scam Pandemic: How Attackers Exploit Public Fear through Phishing
Marzieh Bitaab, Haehyun Cho, Adam Oest +9
As the COVID-19 pandemic started triggering widespread lockdowns across the globe, cybercriminals did not hesitate to take advantage of users' increased usage of the Internet and t…
cs.CR2021
Technical Report -- Expected Exploitability: Predicting the Development of Functional Vulnerability Exploits
Octavian Suciu, Connor Nelson, Zhuoer Lyu +2
Assessing the exploitability of software vulnerabilities at the time of disclosure is difficult and error-prone, as features extracted via technical analysis by existing metrics ar…