Workshop on Web 2.0 Security and Privacy (W2SP)
Workshop on Web 2.0 Security and Privacy (W2SP) Year 2007 Peer-reviewed
Web Security · Privacy

Towards Security By Construction for Web

Benjamin Livshits \'Ulfar Erlingsson
2007
Publication year
Web 2.0 Security
Venue
Peer-reviewed
Type

Summary

While security experts routinely bemoan the current state of the art in software security, from the standpoint of the application developer, application security requirements present yet another hurdle to overcome. Given the pressure for extra functionality, “lesser” concerns such as performance and security often do not get the time they deserve. While it is common to blame this on developer education, a big part of the problem is that it is extremely easy to write unsecure code. In this paper, we examine some opportunities for better security presented by popular software construction frameworks such as the Dojo Toolkit.

Cite this paper — BibTeX
@InProceedings{livshits07security-by-construction,
  title = "Towards Security By Construction for {Web} 2.0 Applications",
  author = "Benjamin Livshits and \'Ulfar Erlingsson",
  year = "2007",
  month = may,
  booktitle = "Workshop on Web 2.0 Security and Privacy (W2SP)",
}
Copied