International Journal of Science and Research (IJSR)

International Journal of Science and Research (IJSR)
Call for Papers | Fully Refereed | Open Access | Double Blind Peer Reviewed

ISSN: 2319-7064

Attacks in HTML5

Kailash L. Methawani, Prof. Avinash P. Wadhe

Abstract: Now days, a web user can enjoy chatting, playing games and Internet banking from simple structured text. The browsers have changed from being a simple structured display to supporting complex multimedia application. All these applications have something in common, they can be run on different platforms and in some cases they will run offline. This is possible due to new features in latest specification HTML, specifically, drawing featured canvas. In this paper, after providing some background to HTML5, we are going to discuss attack surface and possible threats. - CSRF and leveraging CORS to bypass SOP - Attacking WebSQL and client side SQL injection - ClickJacking & Phishing by mixing layers and iframe - Stealing information from Storage and Global variables - DOM injections and Hijacking with HTML 5

Keywords: HTML, HTML5, WebSQL, CSS3

How to Cite?: Kailash L. Methawani, Prof. Avinash P. Wadhe, "Attacks in HTML5", Volume 4 Issue 5, May 2015, International Journal of Science and Research (IJSR), Pages: 760-762, https://www.ijsr.net/getabstract.php?paperid=SUB154233, DOI: https://dx.doi.org/10.21275/SUB154233

Download Citation: APA | MLA | BibTeX | EndNote | RefMan

Share This Research

Help this article reach readers, researchers and professionals.

Share activity is measured for research-engagement analytics. Only verified, unique public shares can support award tie-breaking.

Confirm Your Share

Enter your details so IJSR can confirm this sharing activity.

Your details are used to validate this share and protect the award process from duplicate or false activity.

Download Article PDF


Rate This Article!

Top

Confirm Your Share

Enter your details so IJSR can confirm this sharing activity.

Your details are used to validate this share and protect the award process from duplicate or false activity.