文档介绍:
Characteristic Behavior Sequence Based Attack Detection
Method for Browser Extension#
Xu Guangquan, Wang Junjie*
5
10
(School puter Science and Technology,Tianjin University,TianJin 300072)
Abstract: Browser extensions enhance the browser to help meet the varied needs of a broad user
population through adding personalized features to browser. However, extensions can also expose user
to disastrous attacks from the web. This paper took Firefox as an example to thoroughly
study its extension mechanism and security problem, designed and implemented a monitoring system,
which was depended on a behavior sequence knowledge base and used to find ongoing
attacks. To show the practicality of our system, we described the characteristic behavior sequences of
five typical kinds of attacks. Experiments showed that our system essfully find 11
from 18 times tentative attacks.
Keywords: Browser extension; Behavior sequence; Monitoring system
15
1
Introduction
With the revolution of , the browser has e the de facto platform for daily
computation. The browser was initially designed to simply display and render static HTML.
However, it has evolved into worked operating system, which greatly exceeded the
20
25
30
original expectations. The browser is increasingly being used as the primary application for
entertainment, media, social interaction, email munication, and