Seismic: Secure In-Lined Script Monitors For Interrupting Cryptojacks

COMPUTER SECURITY (ESORICS 2018), PT II(2018)

引用 71|浏览59
暂无评分
摘要
A method of detecting and interrupting unauthorized, browser-based cryptomining is proposed, based on semantic signature-matching. The approach addresses a new wave of cryptojacking attacks, including XSS-assisted, web gadget-exploiting counterfeit mining Evaluation shows that the approach is more robust than current static code analysis defenses, which are susceptible to code obfuscation attacks. An implementation based on in-lined reference monitoring offers a browser-agnostic deployment strategy that is applicable to average end-user systems without specialized hardware or operating systems.
更多
查看译文
关键词
Web security, WebAssembly, Cryptomining, Intrusion detection, In-lined reference monitors
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要