• Home
  • Search
  • XSS pattern for attack modeling in testing
  • Cite Icon20
  • https://doi.org/10.5555/2662413.2662429Copy DOI Icon

XSS pattern for attack modeling in testing

  • May 18, 2013
  • Josip Božić +1 more
Show More
  • Abstract
  • Literature Map
  • References
  • Citations
  • Similar Papers
Abstract

Security issues of web applications are still a current topic of interest especially when considering the consequences of unintended behaviour. Such services might handle sensitive data about several thousands or millions of users. Hence, exploiting services or other undesired effects that cause harm on users has to be avoided. Therefore, for software developers of such applications one of the major tasks in providing security is to embed testing methodologies into the software development cycle, thus minimizing the subsequent damage resulting in debugging and time intensive upgrading. Model-based testing evolved as one of the methodologies which offer several theoretical and practical approaches in testing the system under test (SUT) that combine several input generation strategies like mutation testing, using of concrete and symbolic execution etc. by putting the emphasis on specification of the model of an application. In this work we propose an approach that makes use of an attack pattern model in form of a UML state machine for test case generation and execution. The paper also discusses the current implementation of our attack pattern testing tool using a XSS attack pattern and demonstrates the execution in a case study.

Similar Papers
  • Conference Article
  • Citations24

XSS pattern for attack modeling in testing

  • May 01, 2013
  • Josip Bozic +1
  • Conference Article
  • Citations3

Application stress testing Achieving cyber security by testing cyber attacks

  • Nov 01, 2012
  • Al Underbrink +3
  • Conference Article
  • Citations1

Improving TTCN-3 Test System Robustness Using Software Fault Tolerance

  • Sep 01, 2009
  • Juho Perala
  • Book Chapter

Coverage Criteria for State-Based Testing

  • Jan 01, 2022
  • Sonali Pradhan +2
  • Research Article
  • Citations8

Use of the Prioritization Matrix to Enhance Triage Algorithms in Clinical Decision Support Software

  • Oct 08, 2010
  • American Journal of Medical Quality
  • Frederick North +1
  • Research Article
  • Citations5

PERBANDINGAN KEMAMPUAN REGRESSION TESTING TOOL PADA REGRESSION TEST SELECTION: STARTS DAN EKSTAZI

  • Jul 07, 2021
  • JTT (Jurnal Teknologi Terapan)
  • Asri Maspupah +1
  • Conference Article
  • Citations9

Binary-oriented hybrid fuzz testing

  • Sep 01, 2015
  • Dong Fangquan +3
  • Research Article

Attack pattern mining to discover hidden threats to industrial control systems

  • Mar 13, 2026
  • International Journal of Information Security
  • Muhammad Umer +3
  • Conference Article
  • Citations11

An automated approach for testing the security of web applications against chained attacks

  • Apr 04, 2016
  • Alberto Calvi +1
  • Book Chapter

Complex Organizations, Knowledge-Intensive Applications, Software and Systems Development: A Case Study

  • Jan 01, 1995
  • Anna Giannetti +1
  • Conference Instance
  • Citations3

Proceedings of the 2015 International Conference on Software and System Process

  • Aug 24, 2015
  • Ross Jeffery +3
  • Conference Article
  • Citations351

Symbolic execution for software testing in practice

  • May 21, 2011
  • Cristian Cadar +6
  • Research Article
  • Citations15

Symbolic execution based test-patterns generation algorithm for hardware Trojan detection

  • Jul 17, 2018
  • Computers & Security
  • Lixiang Shen +5
  • Research Article
  • Citations2

The Optimization of a Symbolic Execution Engine for Detecting Runtime Errors

  • Jan 01, 2017
  • Acta Cybernetica
  • István Kádár
  • Conference Article
  • Citations3

Towards optimization of the coverage testing of interactive systems

  • Sep 28, 2004
  • F Belli +1
Cactus Communications logo

Copyright 2026 Cactus Communications. All rights reserved.