Volume 2 Number 6 (Dec. 2007)
Home > Archive > 2007 > Volume 2 Number 6 (Dec. 2007) >
JSW 2007 Vol.2(6): 53-63 ISSN: 1796-217X
doi: 10.4304/jsw.2.6.53-63

Using Aspect Programming to Secure Web Applications

Gabriel Hermosillo Roberto Gomez1, Lionel Seinturier Laurence Duchien2
1ITESMCEM/Dpto. Ciencias Computacionales, Edo. de Mexico, Mexico
2University of LilleLIFLINRIA Project ADAM, Villeneuve d’Ascq, France


Abstract—As the Internet users increase, the need to protect web servers from malicious users has become a priority in many organizations and companies. Writing crosscutting functions in complex software should take advantage of the modularity offered by new software development approaches. With AspectOriented Programming (AOP), separating concerns when designing an application fosters reuse, parameterization and maintenance. In this paper, we design a security aspect called AProSec for detecting SQL injection and Cross Scripting Site (XSS), that are common attacks in web servers. We experimented this aspect with AspectJ language and JBoss AOP. By this experimentation, we show the advantage of runtime platforms such as JBoss AOP for changing security policies at runtime. Finally, we describe related work on security and AOP.

Index Terms—Aspectoriented programming, security, SQL injection, cross site scripting, design of web applications, reuse of aspect, dynamic weaving

[PDF]

Cite: Gabriel Hermosillo Roberto Gomez, Lionel Seinturier Laurence Duchien, " Using Aspect Programming to Secure Web Applications," Journal of Software vol. 2, no. 6, pp. 53-63, 2007.

General Information

ISSN: 1796-217X (Online)
Frequency: Monthly
Editor-in-Chief: Prof. Antanas Verikas
Executive Editor: Ms. Yoyo Y. Zhou
Abstracting/ Indexing: DBLP, EBSCO, ProQuest, INSPEC, ULRICH's Periodicals Directory, WorldCat, etc
E-mail: jsw@iap.org
  • Aug 21, 2019 News!

    Papers published in JSW Vol 14, No 1- Vol 14 No 8 have been indexed by DBLP     [Click]

  • Jun 25, 2019 News!

    Vol.13, No.9 has been indexed by EI (Inspec).   [Click]

  • Aug 01, 2018 News!

    [CFP] 2019 the annual meeting of JSW Editorial Board, ICCSM 2019, will be held in Barcelona, Spain, July 14-16, 2019.   [Click]

  • Jul 10, 2019 News!

    Vol 14, No.8 has been published with online version 4 original aritcles from 2 countries are published in this issue.    [Click]

  • Jul 22, 2019 News!

    Welcome Prof Ferhat Khendek from Canada to join the Editorial board of JSW    [Click]