Access Control Vulnerabilities Detection for Web Application Components

Qian Wang,Jinan Sun,Chen Wang,Shikun Zhang,Sisi Xuanyuan,Bin Zheng
DOI: https://doi.org/10.1109/bigdatasecurity-hpsc-ids49724.2020.00016
2020-01-01
Abstract:In this paper we review the research progress of the mainstream approaches of detecting access control vulnerabilities and classify them based on the key techniques for web application components. And we compare different detection methods, analyze their advantages and flaws. Then we discuss the experimental results of relevant detection tools for realistic usage. Finally, we summarize the general framework of detection method and provide future research directions in this area.
What problem does this paper attempt to address?