http://10.10.120.238:8080/xmlui/handle/123456789/335
DC Field | Value | Language |
---|---|---|
dc.contributor.author | Varshney G. | en_US |
dc.contributor.author | Shah N. | en_US |
dc.date.accessioned | 2023-11-30T08:28:45Z | - |
dc.date.available | 2023-11-30T08:28:45Z | - |
dc.date.issued | 2021 | - |
dc.identifier.isbn | 978-1665413763 | - |
dc.identifier.other | EID(2-s2.0-85115339417) | - |
dc.identifier.uri | https://dx.doi.org/10.1109/ICT52184.2021.9511514 | - |
dc.identifier.uri | http://localhost:8080/xmlui/handle/123456789/335 | - |
dc.description.abstract | End users consider the data available through web as unmodified. Even when the web is secured by HTTPS, the data can be tampered in numerous tactical ways reducing trust on the integrity of data at the clients' end. One of the ways in which the web pages can be modified is via client side browser extensions. The extensions can transparently modify the web pages at client's end and can include new data to the web pages with minimal permissions. Clever modifications can be addition of a fake news or a fake advertisement or a link to a phishing website. We have identified through experimentation that such attacks are possible and have potential for serious damages. To prevent and detect such modifications we present a novel domain expressiveness based approach that uses DNS (Domain Name System) TXT records to express the Hash of important web pages that gets verified by the browsers to detect/thwart any modifications to the contents that are launched via client side malicious browser extensions or via cross site scripting. Initial experimentation suggest that the technique has potential to be used and deployed. © 2021 IEEE. | en_US |
dc.language.iso | en | en_US |
dc.publisher | Institute of Electrical and Electronics Engineers Inc. | en_US |
dc.source | 2021 28th International Conference on Telecommunications, ICT 2021 | en_US |
dc.subject | DNS | en_US |
dc.subject | Malicious Browser Extensions | en_US |
dc.subject | Malicious Modification | en_US |
dc.subject | Security Policies | en_US |
dc.subject | Web Defacement | en_US |
dc.subject | Websites | en_US |
dc.title | A DNS Security Policy for Timely Detection of Malicious Modification on Webpages | en_US |
dc.type | Conference Paper | en_US |
Appears in Collections: | Conference Paper |
Items in DSpace are protected by copyright, with all rights reserved, unless otherwise indicated.