Assessing The Security Of Node.Js Platform

Andres Ojamaa, Karl Dueuena

International Conference for Internet Technology and Secured Transactions(2012)

引用 11|浏览9
暂无评分
摘要
Node.js is a novel event-based network application platform which forces developers to use asynchronous programming interfaces for I/O operations. The native language for developing applications on this platform is JavaScript. Despite its young age the platform has attracted a significant community of developers and gained support from the industry. The Node.js community generally has a strong focus on the scalability of the platform. However, little research has been done on how the platform's design decisions affect the security of its applications. This paper outlines several possible security pitfalls to be aware of when using Node.js platform and server side JavaScript. We also describe two discovered vulnerabilities and give recommendations for developing and configuring secure and resilient web applications on the Node.js platform.
更多
查看译文
关键词
information security,denial of service,server platform security,server side JavaScript security
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要