IFrandbox: client side protection from malicious injected iframes

INFORMATION SYSTEMS SECURITY(2011)

引用 0|浏览0
暂无评分
摘要
Drive-by downloads are currently one of the most popular methods of malware distribution. Widely visited legitimate websites are infused with invisible or barely visible Iframes pointing to malicious URLs, causing silent download malware on users system. In this paper, we present a client side solution for protection from such malevolent hidden Iframes. We have implemented our solution as an extension to Mozilla Firefox browser. The extension will check every Iframe loaded in the browser for properties emblematic of malicious Iframes such as hidden visibility styles and 0-pixel dimensions. These Iframes are then blocked by using browser content policy mechanism, hence alleviating the possibility of the malicious download taking place.
更多
查看译文
关键词
browser content policy mechanism,client side protection,hidden visibility style,malware distribution,malicious urls,mozilla firefox browser,visible iframes,malicious download,malicious iframes,malevolent hidden iframes,client side solution
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要