Manuscript Number : IJSRST173382
Discover Broken Authentication and Session Management Vulnerabilities in ASP.NET Web Application
Authors(2) :-Rupal R Sharma, Ravi K Sheth Today, web application security is most significant battlefield between victim, attacker and resource of web service. The websites which are written in ASP.NET might contain security vulnerabilities which are not seen to the owner of the website. This paper describes an algorithm that aims in the detection of security vulnerabilities of broken authentication and session management. The suggested algorithm of this paper performs a scanning process for website and web application files. Our scanner tool relies on studying the source code of the application depending on ASP.NET files and the code behind files (C sharp C#). A program written for this purpose is to generate a report that describes most leaks and vulnerabilities types by mentioning the file name, leak description and its location. The aim of the paper is to discover the broken authentication and session management vulnerabilities. The suggested algorithm will help organization and developer to fix the vulnerabilities and improve the overall security.
Rupal R Sharma Web security, session management, session hijack, Broken Authentication, ASP.NET Publication Details
Published in : Volume 3 | Issue 3 | March-April 2017 Article Preview
M.Tech, Cyber Security, Student, Department of Information Technology, Raksha Shakti University, Ahmedabad, Gujarat, India
Ravi K Sheth
Assistant Prof., Department of Information Technology, Raksha Shakti University, Ahmedabad, Gujarat, India
Date of Publication : 2017-04-30
License: This work is licensed under a Creative Commons Attribution 4.0 International License.
Page(s) : 290-293
Manuscript Number : IJSRST173382
Publisher : Technoscience Academy
Journal URL : https://ijsrst.com/IJSRST173382
Citation Detection and Elimination |
|
|
" target="_blank"> BibTeX |
" target="_blank">RIS |
" target="_blank">CSV