• Title/Summary/Keyword: Page Types

Search Result 172, Processing Time 0.025 seconds

Attacks and Defenses for Vulnerability of Cross Site Scripting (크로스 사이트 스크립팅(XSS) 취약점에 대한 공격과 방어)

  • Choi, Eun-Jung;Jung, Whi-Chan;Kim, Seung-Yeop
    • Journal of Digital Convergence
    • /
    • v.13 no.2
    • /
    • pp.177-183
    • /
    • 2015
  • Cross Site Scripting enables hackers to steal other user's information (such as cookie, session etc.) or to do abnormal functions automatically using vulnerability of web application. This attack patterns of Cross Site Scripting(XSS) can be divided into two types. One is Reflect XSS which can be executed in one request for HTTP and its reply, and the other is Stored XSS which attacks those many victim users whoever access to the page which accepted the payload transmitted. To correspond to these XSS attacks, some measures have been suggested. They are data validation for user input, output validation during HTML encoding procedures, and removal of possible risk injection point to prevent from trying to insert malicious code into web application. In this paper, the methods and procedures for these two types are explained and a penetration testing is done. With these suggestions, the attack by XSS could be understood and prepared by its countermeasures.

A Study on the 4D Traffic Condition Board based on a Mash-up Technology (Mash-up 기술을 이용한 4D Wall-Map 구성체계)

  • Kim, Joo-Hwan;Yang, Seung-Mook;Nam, Doo-Hee
    • The Journal of The Korea Institute of Intelligent Transport Systems
    • /
    • v.8 no.3
    • /
    • pp.27-33
    • /
    • 2009
  • Content used in mashups is typically obtained from a third party source through a public interface or API (web services). Other methods of obtaining content for mashups include Web feeds (e.g. RSS or Atom), and screen scraping. A mashup or meshup Web application has two parts: A new service delivered through a Web page, using its own data and data from other sources. The blended data, made available across the Web through an API or other protocols such as HlTP, RSS, REST, etc. There are many types of mashups, such as consumer mashups, data mashups, and Business Mashups. The most common mashup is the consumer mashup, which are aimed at the general public. Examples include Google Maps, iGuide, and RadioClouds. 4D Wall-map display is data mashups combine similar types of media and information from multiple sources into a single representation. This technology focus data into a single presentation and allow for collaborative action among ITS-related information sources.

  • PDF

Context-based Web Application Design (컨텍스트 기반의 웹 애플리케이션 설계 방법론)

  • Park, Jin-Soo
    • The Journal of Society for e-Business Studies
    • /
    • v.12 no.2
    • /
    • pp.111-132
    • /
    • 2007
  • Developing and managing Web applications are more complex than ever because of their growing functionalities, advancing Web technologies, increasing demands for integration with legacy applications, and changing content and structure. All these factors call for a more inclusive and comprehensive Web application design method. In response, we propose a context-based Web application design methodology that is based on several classification schemes including a Webpage classification, which is useful for identifying the information delivery mechanism and its relevant Web technology; a link classification, which reflects the semantics of various associations between pages; and a software component classification, which is helpful for pinpointing the roles of various components in the course of design. The proposed methodology also incorporates a unique Web application model comprised of a set of information clusters called compendia, each of which consists of a theme, its contextual pages, links, and components. This view is useful for modular design as well as for management of ever-changing content and structure of a Web application. The proposed methodology brings together all the three classification schemes and the Web application model to arrive at a set of both semantically cohesive and syntactically loose-coupled design artifacts.

  • PDF

Current Status of Augmented Reality Picture Books and Preschooler's Immersion (증강현실 그림책 현황과 유아의 몰입도)

  • Han, You Me;Won, Soon Ok
    • Journal of Information Technology Applications and Management
    • /
    • v.29 no.1
    • /
    • pp.47-57
    • /
    • 2022
  • The purpose of this study is to analyze the current status of augmented reality picture books, which have been steadily developed since 2010, as a genre of electronic picture books, and to reveal how children's immersion in augmented reality picture books differs from paper picture books. To this end, 30 augmented reality picture books on the market were analyzed according to genre, life theme, implementation method, and augmented reality scene ratio. As a result of the study, it was found that the genre of picture books was in the order of information fairy tales, daily fairy tales, and historical fairy tales, and there were no traditional or fantasy fairy tales. Animals and plants accounted for about half of the life topics, and in some cases, there were only a few or no other life topics. In the augmented reality implementation scene, it consisted of only one page in the early days, but all pages are now possible to implement augmented reality due to technology development, production cost reduction, and improved hardware performance of smartphones. It was found that the augmented reality implementation method used CD-ROM in the early days, but gradually became possible to implement using only mobile phones and tablets that were easy for readers to access. In addition, after presenting four picture books to eight 5-year-old infants, the immersion time was measured and the immersion behavior was observed. As a result, augmented reality picture books showed higher immersion[immersion time, immersion behavior] than paper picture books, but compared by literature genre, life fairy tales were higher in paper picture books and natural fairy tales in augmented reality picture books. It was higher when presenting augmented reality picture books after presenting paper picture books according to the order of presentation of picture book types. The results of this study suggest that more diverse life topics and augmented reality picture books in the genre of children's literature should be developed to increase the utilization of augmented reality picture books. In addition, considering that there are differences in immersion between types, literary genres, and reading experience [presentation order], it is expected to increase the educational effect by using picture books complementarily.

Variation in the Size of Light Harvesting 1 of Purple Bacteria

  • Akiyama, Machiko;Nagashima, Kenji V.P.;Inoue, Ryouji;Wakayama, Tatsuki;Kise, Hideo;Hara, Masayuki;Kobayashi, Masami
    • Journal of Photoscience
    • /
    • v.9 no.2
    • /
    • pp.350-352
    • /
    • 2002
  • We examined the bacteriochlorophyill/bacteriopheophytin ratios in several species of purple bacteria containing only LHI. The pigment ratios depended greatly on species. Further, Rhodospirillum rubrum showed wide variation when grown under different light intensity, and Rhodobium marinum showed significant variation from culture to culture even under the same light conditions. The protein ratios of a/RC and $\beta$/RC estimated by SDS-PAGE of chromatophores of Rsp. rubrum and Rbi. marinum exhibited the ratio of $\beta$/$\alpha$ > 1. These findings gave us the novel idea that there are two types of LHl; one is a C-shaped open antenna composed by $\alpha$$\beta$ units surrounding a RC, and another is a small closed ring antenna composed by $\alpha$$\beta$ units located peripherally in a variable ratio to the core complex like LH2.

  • PDF

Minor Thermostable Alkaline Protease Produced by Thermoactinomyces sp. E79

  • Kim, Young-Ok;Lee, Jung-Kee;Sunitha, Kandula;Kim, Hyung-Kwoun;Oh, Tae-Kwang
    • Journal of Microbiology and Biotechnology
    • /
    • v.9 no.4
    • /
    • pp.469-474
    • /
    • 1999
  • Thermoactinomyces sp. E79 produced two types of thermostable alkaline proteases extracellularly. A minor protease was separated from a major protease by using DEAE-column chromatography. This enzyme was purified to homogeneity by ammonium sulfate and DEAE-Sepharose ion-exchange chromatography. The purified minor protease showed different biochemical properties compared to the major protease. The molecular mass of the purified enzyme was estimated by SDS-PAGE to be 36 kDa. Its optimum temperature and pH for proteolytic activity against Hammarsten casein were $70^{\circ}C$ and 9.0, respectively. The enzyme was stable up to$75^{\circ}C$ and in an alkaline pH range of 9.0-11.0. The enzyme was inhibited by phenylmethylsulfonyl fluoride (PMSF) and $Hg^{2+}, indicating that the enzyme may be a cysteine-dependent serine protease. In addition, the enzyme cleaved the endoproteinase substrate, succinyl-Ala-Ala-Pro-Phe-p- nitroanilide, and the $K_m$ value for the substrate was 1.2 mM.

  • PDF

Expression and Characterization of Three Types of $\delta$-Endotoxin Genes in Transformant, Bacillus thruingiensis PT0529 (형질전환체, Bacillus thuringiensis PT0529내에서 세가지 내독소 단백질 유전자들의 발현 특성)

  • 박현우;제연호
    • Journal of Sericultural and Entomological Science
    • /
    • v.37 no.2
    • /
    • pp.176-180
    • /
    • 1995
  • To characterize expression and formation of three type crystal proteins in transformant, Bacillus thruingiensis PT0529 was analysed by transmission electron microscope and SDS-PAGE according to growth. The results showed that the introduced crystal protein genes, rcyIVD and cytA, were well expressed at earlier stage than resident crystal proteins were also expressed with their own morphology. However, resident crystal protein of B. thuringiensis PT0529 was smaller than that of wild type B. thuringiensis NT0423, suggesting that resident crystal protein production was interfered with introduced two type crystal protein genes.

  • PDF

A Study on Consumer Problems in the Contents of mobile game - Focused on analyzing the bulletin board on the mobile game sites - (모바일게임 콘덴츠 관련 소비자문제에 관한 연구 -모바일게임사이트의 게시판 분석을 중심으로-)

  • Park, Mi-Hye;Kang, Lee-Ju
    • Korean Journal of Human Ecology
    • /
    • v.14 no.4
    • /
    • pp.577-592
    • /
    • 2005
  • This study analyzes the comsumer complaints that are listed on bulletin board (or Q & A page) of mobile game sites in order to search for comsumer problems in the contents of mobile games. This analysis includes 3,664 cases of complaints on 17 mobile game sites. The finding indicates that they can be categorized into 10 types of complaints: game errors, how to play, game quality, game capacity, fee inquiry, excessive fees, lack of information, refund, unfulfilment of promises, game support. The problems with the game itself account for 54.8% of total complaints, and unsatisfaction from game fees and others take up 25.5% and 19.7% respectively. Therefore, we suggest that first, the quality of mobile games and consumer education be improved, second, information about game fees be provided to consumers more sufficiently in a proper manner, and lastly pertinent regulations on consumer damages compensation and adhesion contracts be established.

  • PDF

Production of Characterization of Monoclonal Antibody to Glycoprotein D Antigen of Herpes simplex Virus Type 2

  • Choi, Young-Sook;Kim, Tae-Un;Lee, Inyung-Hoan;Cho, Myung-Hwan
    • Journal of Microbiology and Biotechnology
    • /
    • v.11 no.2
    • /
    • pp.173-178
    • /
    • 2001
  • A monoclonal antibody (mAb) to the glucoprotein D (gD) of Herpes simplex virus type 2 (HSV-2) was successfully generated by hybridoma technology and characterized. The mAb, SKS2v, recognized a gD antigen with an apparent molecular mass of 60kDa in a Western blot analysis. The isotype was determined by a sandwich ELISA to be IgG2a. HSV-2 exhibited major antigens of 36, 43, 46, 47, 60, 69, 81, 96, 109, 112, 159, and 227 kDa among 25 protein profiles in SDS-PAGE, and among these antigens, those of 60, 112, 125, and 227 kDa were immunodominant in a Western blot analysis using antisera, thereby indicating that they play a role in inducing neutralizing antibodies in HSV-2 infection. When reacted with Vero cells infected with HSV-1 and HSV-2 SKSv2 showed a reactivity to the surface of the infected cells, and a gD antigen of 60 kDa appeared to be expressed in both types of HSV.

  • PDF

A Bluetooth Scatternet Reformation Algorithm

  • Lee Han-Wook;Kauh Sang-Ken
    • Journal of Communications and Networks
    • /
    • v.8 no.1
    • /
    • pp.59-69
    • /
    • 2006
  • Bluetooth is reputed as a wireless networking technology supplying ad-hoc networks between digital devices. In particular, Bluetooth scatternet is an essential part of dynamic ad-hoc networks. Yet, there have not been sufficient researches performed on scatternet environment. This paper proposes a scatternet reformation algorithm for ad-hoc networks for instances where some nodes enter or leave the scatternet. The proposed algorithm is a general algorithm that can be applied to many types of Bluetooth scatternet regardless of the topology. The proposed algorithm is made for two reformation cases, i.e., nodes leaving and nodes entering. For the reformation when nodes leave a scatternet, the recovery node vector (RNV) algorithm is proposed. It has short reformation setup delay because the process involves a single page process (not including inquiry process). For the reformation when nodes enter a scatternet, the entry node algorithm is proposed. This is a simple and easily implementable algorithm. In this paper, real hardware experiments are carried out to evaluate the algorithm's performance where the reformation setup delay, the reformation setup probability and the data transfer rate are measured. The proposed algorithm has shown improvement in the reformation setup delay and probability.