Analýza Bezpečnosti JavaScript knihoven a rámců

Abstract

This diploma thesis describes the process of security analysis of JavaScript packages and libraries. The thesis aims to discuss current security issues and vulnerabilities in the JavaScript ecosystem while also outlining state of the art solutions to these problems as well as the flaws of the solutions themselves. Two experiments have been conducted as a part of the thesis. The first experiment focuses on testing an existing malware sample. The second experiment is based on the implementation of seven attacks and vulnerabilities and their subsequent analysis with three open-source tools.

Description

Subject(s)

JavaScript, script, npm, malware, analysis, security

Citation