Title | Identification and Mitigation Tool For Cross-Site Request Forgery (CSRF) |
Publication Type | Conference Paper |
Year of Publication | 2020 |
Authors | Rankothge, W.H., Randeniya, S M.N. |
Conference Name | 2020 IEEE 8th R10 Humanitarian Technology Conference (R10-HTC) |
Date Published | dec |
Keywords | Conferences, Cross-Site Request Forgery (CSRF), Forgery, Human Behavior, Information security, Metrics, Organizations, pubcrawl, Resiliency, threat mitigation, Tools, vulnerability identification, Vulnerability Mitigation Introduction, Web application |
Abstract | Most organizations use web applications for sharing resources and communication via the internet and information security is one of the biggest concerns in most organizations. Web applications are becoming vulnerable to threats and malicious attacks every day, which lead to violation of confidentiality, integrity, and availability of information assets.We have proposed and implemented a new automated tool for the identification and mitigation of Cross-Site Request Forgery (CSRF) vulnerability. A secret token pattern based has been used in the automated tool, which applies effective security mechanism on PHP based web applications, without damaging the content and its functionalities, where the authenticated users can perform web activities securely. |
DOI | 10.1109/R10-HTC49770.2020.9357029 |
Citation Key | rankothge_identification_2020 |