a国产,中文字幕久久波多野结衣AV,欧美粗大猛烈老熟妇,女人av天堂

Web2.0技術(shù)安全性的研究與防范

發(fā)布時(shí)間:2019-04-26 07:15
【摘要】:隨著互聯(lián)網(wǎng)的快速發(fā)展,以個(gè)人為中心的開放式Web2.0站點(diǎn)開始逐漸占據(jù)各大網(wǎng)站,各種社交網(wǎng)絡(luò)、個(gè)人博客、開放式信息-平臺(tái)孕育而生。然而新技術(shù)的使用以及Web2.0網(wǎng)站數(shù)量的不斷增長,在為用戶帶來更好的互聯(lián)網(wǎng)體驗(yàn)時(shí)也帶來了新的安全威脅,各種Web蠕蟲、惡意信息利用Web2.0網(wǎng)或站的開放性大肆傳播,嚴(yán)重危害著互聯(lián)網(wǎng)用戶的安全與隱私。因此,對(duì)Web2.0技術(shù)的安全性研究與防范具有重大意義。本文首先對(duì)Web2.0相關(guān)技術(shù)進(jìn)行了研究與總結(jié)并對(duì)這些技術(shù)的安全性進(jìn)行分析,主要包括能極大改善交互體驗(yàn)的AJAX技術(shù)以及提高信息傳輸速度的HTTP壓縮技術(shù)。對(duì)于AJAX技術(shù),首先研究了主要原理,分析其中可能存在的安全隱患并與傳統(tǒng)Webl.0的交互方式進(jìn)行對(duì)比,總結(jié)兩者的優(yōu)缺點(diǎn),結(jié)合目前出現(xiàn)Web攻擊,分析了 XSS、CSRF等多種攻擊基于AJAX技術(shù)的新改變。對(duì)于HTTP壓縮技術(shù),首先研究了目前Web常用的幾種壓縮算法,并對(duì)利用HTTP壓縮技術(shù)而新產(chǎn)生的Orcale攻擊、Breach攻擊進(jìn)行了研究與分析。經(jīng)過對(duì)以上技術(shù)的安全性分析,通過調(diào)研現(xiàn)有的XSS、CSRF防御方法,主要有基于黑白名單的防御方法和基于Token校驗(yàn)的防御方法,在分析了這些防御的優(yōu)缺點(diǎn)以及新攻擊對(duì)這些方法產(chǎn)生威脅的基礎(chǔ)上,本文提出了一種針對(duì)Web2.0應(yīng)用的安全防御方案。該方案將基于特征匹配的輸入檢測(cè)以及富文本白名單輸出過濾相結(jié)合進(jìn)行XSS攻擊的防御,使用一種可逆加密算法將Token隨機(jī)化來防御與Breach攻擊結(jié)合的新型CSRF攻擊。通過實(shí)驗(yàn)數(shù)據(jù)表明,該防御方案能有效的防御Web2.0應(yīng)用中頻繁出現(xiàn)的攻擊,防御效果相比傳統(tǒng)方案更加顯著。
[Abstract]:With the rapid development of the Internet, individual-centered open Web2.0 sites gradually occupy the major websites, various social networks, personal blogs, open information-platform gestation. However, the use of new technologies and the increasing number of Web2.0 websites also bring new security threats to users when they bring a better Internet experience. Various Web worms and malicious information take advantage of the openness of Web2.0 nets or stations to spread extensively. It seriously endangers the security and privacy of Internet users. Therefore, it is of great significance to study and prevent the security of Web2.0 technology. In this paper, Web2.0-related technologies are studied and summarized, and the security of these technologies is analyzed, including AJAX technology, which can greatly improve interactive experience, and HTTP compression technology, which can improve the speed of information transmission. For AJAX technology, the main principle is studied firstly, the possible security hidden danger is analyzed and compared with the traditional Webl.0, the advantages and disadvantages of the two are summarized, and combined with the Web attack at present, the XSS, is analyzed. Many attacks, such as CSRF, are based on new changes in AJAX technology. For HTTP compression technology, this paper first studies several compression algorithms commonly used in Web at present, and studies and analyzes the new Orcale attack and Breach attack which are generated by using HTTP compression technology. Through the security analysis of the above technologies, through the investigation of the existing XSS,CSRF defense methods, there are mainly black-and-white list-based defense methods and Token-based defense methods. Based on the analysis of the advantages and disadvantages of these defenses and the threat of new attacks to these methods, a security defense scheme for Web2.0 applications is proposed in this paper. This scheme combines feature matching-based input detection and rich text white list output filtering to defend against XSS attacks, and uses a reversible encryption algorithm to randomize Token against a new type of CSRF attack combined with Breach attacks. The experimental data show that this defense scheme can effectively defend against the frequent attacks in Web2.0 applications, and the defense effect is more significant than the traditional scheme.
【學(xué)位授予單位】:北京郵電大學(xué)
【學(xué)位級(jí)別】:碩士
【學(xué)位授予年份】:2017
【分類號(hào)】:TP393.4

【參考文獻(xiàn)】

相關(guān)期刊論文 前10條

1 詹雄;郭昊;張,

本文編號(hào):2465860


資料下載
論文發(fā)表

本文鏈接:http://www.wukwdryxk.cn/guanlilunwen/ydhl/2465860.html


Copyright(c)文論論文網(wǎng)All Rights Reserved | 網(wǎng)站地圖 |

版權(quán)申明:資料由用戶0a7d3***提供,本站僅收錄摘要或目錄,作者需要?jiǎng)h除請(qǐng)E-mail郵箱bigeng88@qq.com
国产在线观看你懂的| 国产黄在线观看免费观看| 久久不色| 久久精品毛片| 色婷婷影视| 91在线区啪国自产中文字幕| 精品乱子伦一区二区三区| 亚洲一级黄色视频免费观看| 亚洲国产中文精品高清在线电影| 成人A级毛片免费视频| 无码人妻久久一区二区三区免费| 国内精品久久久久久不卡影院 | 国产成人亚洲日韩欧美久久| 欧美日韩在线视频一区| 久久99国产精品久久99果冻传媒 | 麻花豆传媒剧国产MV免费版特色| 97人伦影院A级毛片 | 国产一区二区精品久久岳| 云霄县| 宁远县| 国产精品无码一区二区牛牛| 91亚洲精品乱码久久久久久蜜桃| 播播影院| 福安市| 亚洲综合色区中文字幕| 五月丁香综合缴情六月小说 | h视频免费看| 精品久久人妻| 啪啪啪免费网站| 国产女人18毛片水真多1| 国产av黄色| 麻豆在线观看| 阳高县| 丰满熟女大屁股水多多| 无码字幕AV一区二区三区| 久久亚洲精品情侣| 国产精品白丝久久av网站 | 中文精品一区二区三区四区| 人妻出差精油按摩被中出| 真人一进一出120秒试看| 91看视频|