Sciweavers

WWW
2008
ACM

Better abstractions for secure server-side scripting

15 years 3 days ago
Better abstractions for secure server-side scripting
bstractions for Secure Server-Side Scripting Dachuan Yu Ajay Chander Hiroshi Inamura Igor Serikov DoCoMo Communications Laboratories USA 3240 Hillview Avenue Palo Alto, CA 94304 {yu,chander,inamura,iserikov}@docomolabs-usa.com It is notoriously difficult to program a solid web application. Besides addressing web interactions, state maintenance, and whimsical user navigation behaviors, programmers must also avoid a minefield of security vulnerabilities. The problem is twofold. First, we lack a clear understanding of the new computation model unweb applications. Second, we lack proper abstractions for hiding common and subtle coding details that are orthogonal to the business functionalities of specific web applications. This paper addresses both issues. First, we present a language BASS for declarative server-side scripting. BASS allows programwork in an ideal world, using new abstractions to tackle common but problematic aspects of web programming. The meta properties of BASS provide ...
Dachuan Yu, Ajay Chander, Hiroshi Inamura, Igor Se
Added 21 Nov 2009
Updated 21 Nov 2009
Type Conference
Year 2008
Where WWW
Authors Dachuan Yu, Ajay Chander, Hiroshi Inamura, Igor Serikov
Comments (0)