• Home
  • Search
  • A PU‐learning based approach for cross‐site scripting attacking reality detection
  • https://doi.org/10.1049/ntw2.12123Copy DOI Icon

A PU‐learning based approach for cross‐site scripting attacking reality detection

Show More
  • Abstract
  • Literature Map
  • References
  • Similar Papers
Abstract

Abstract Cross‐site scripting (XSS) attack has been one of the most dangerous attacks in cyberspace security. Traditional methods essentially discover XSS attack by detecting malicious payloads in requests, which is unable to distinguish attacking attempts with the attacking reality. The authors collect responses from a web server and train a bagging‐based PU learning model to determine whether the XSS vulnerability is truly triggered. To validate the authors’ proposed framework, experiments are performed on 5 popular web applications with 11 specified CVE recorded vulnerabilities and 32 vulnerable inputs. Results show that the authors’ approach outperforms existing research studies, effectively identifies the attacking reality from attacking attempts, and meanwhile reduces the number of worthless security alarms.

Similar Papers
  • Research Article
  • Citations3

DoubleR: Effective XSS attacking reality detection

  • Jun 08, 2024
  • Computer Networks
  • Wenbo Wang +2
  • Research Article
  • Citations8

Structural Learning of Attack Vectors for Generating Mutated XSS Attacks

  • Sep 17, 2010
  • Electronic Proceedings in Theoretical Computer Science
  • Yi-Hsun Wang +2
  • PDF
  • Research Article
  • Citations9

Grey-Box Fuzzing Based on Reinforcement Learning for XSS Vulnerabilities

  • Feb 15, 2023
  • Applied Sciences
  • Xuyan Song +3
  • Research Article

Defending Against Web Application Cross-Site Scripting Attacks (XSS) Using new security model (NSM)

  • May 14, 2022
  • Journal of Computer and Scientific Technology
  • Dr Khalid Ahmed Ibrahim Khalifa +1
  • Conference Article
  • Citations28

XSS Application Worms: New Internet Infestation and Optimized Protective Measures

  • Jul 01, 2007
  • Jayamsakthi Shanmugam +1
  • Single Book
  • Citations17

Understanding Intrusion Detection Through Visualization

  • Jan 01, 2006
  • Stefán Axelsson +1
  • Research Article

Special Issue on Web Services Practices

  • Sep 20, 2006
  • Journal of Advanced Computational Intelligence and Intelligent Informatics
  • Ajith Abraham +3
  • Conference Article
  • Citations3

Assessments Sqli and Xss vulnerability in several organizational websites of North khorasan in Iran and offer solutions to fix these vulnerabilities

  • Apr 01, 2017
  • Fatemeh Talebzadeh Pirvadlu +1
  • Conference Article
  • Citations12

Design and development of Anti-XSS proxy

  • Dec 01, 2013
  • Hossain Shahriar +3
  • Research Article

EXSS: an Educational Emulator for Cross-Site Scripting Attacks

  • May 04, 2026
  • Journal of the Brazilian Computer Society
  • Bianca Guarizi +8
  • Research Article

Detection of Wormhole Attack in Wireless Sensor Networks: A Survey

  • Aug 07, 2024
  • International Research Journal of Modernization in Engineering Technology and Science
  • Kajal Bhavsar
  • Research Article

Reducing the Effectiveness of Gray-Hole Attack in Manet

  • Sep 01, 2018
  • International Journal of Engineering & Technology
  • W Ancy Breen +3
  • Conference Article
  • Citations7

Cross Channel Scripting (XCS) Attacks in Web Applications: Detection and Mitigation Approaches

  • Oct 01, 2018
  • R Madhusudhan +1
  • Research Article
  • Citations1

The Cross-Site Scripting (XSS) Attack: A Comprehensive Review

  • Jul 25, 2024
  • International Journal of Advanced Research in Science, Communication and Technology
  • Prof Jayanthkumar A Rathod +6
  • Conference Article
  • Citations5

Consideration of Security Attacks in the Design Space Exploration of Embedded Systems

  • Aug 01, 2019
  • Lukas Gressl +2
Cactus Communications logo

Copyright 2026 Cactus Communications. All rights reserved.