Sebastian Lekies

According to our database1, Sebastian Lekies authored at least 17 papers between 2011 and 2023.

Collaborative distances:
  • Dijkstra number2 of four.
  • Erdős number3 of four.

Timeline

Legend:

Book 
In proceedings 
Article 
PhD thesis 
Dataset
Other 

Links

On csauthors.net:

Bibliography

2023
Client-Side Cross-Site Scripting: Exploitation, Detection, Mitigation, and Prevention.
PhD thesis, 2023

2022
No keys to the kingdom required: a comprehensive investigation of missing authentication vulnerabilities in the wild.
Proceedings of the 22nd ACM Internet Measurement Conference, 2022

2021
JSONPS: Secure an inherently insecure practice with this one weird trick!
Proceedings of the IEEE European Symposium on Security and Privacy Workshops, 2021

2017
Code-Reuse Attacks for the Web: Breaking Cross-Site Scripting Mitigations via Script Gadgets.
Proceedings of the 2017 ACM SIGSAC Conference on Computer and Communications Security, 2017

2016
CSP Is Dead, Long Live CSP! On the Insecurity of Whitelists and the Future of Content Security Policy.
Proceedings of the 2016 ACM SIGSAC Conference on Computer and Communications Security, 2016

2015
The Unexpected Dangers of Dynamic JavaScript.
Proceedings of the 24th USENIX Security Symposium, 2015

From Facepalm to Brain Bender: Exploring Client-Side Cross-Site Scripting.
Proceedings of the 22nd ACM SIGSAC Conference on Computer and Communications Security, 2015

2014
Precise Client-side Protection against DOM-based Cross-Site Scripting.
Proceedings of the 23rd USENIX Security Symposium, San Diego, CA, USA, August 20-22, 2014., 2014

DOM-basiertes Cross-Site Scripting im Web: Reise in ein unerforschtes Land.
Proceedings of the Sicherheit 2014: Sicherheit, 2014

2013
Eradicating DNS Rebinding with the Extended Same-origin Policy.
Proceedings of the 22th USENIX Security Symposium, Washington, DC, USA, August 14-16, 2013, 2013

Tamper-Resistant LikeJacking Protection.
Proceedings of the Research in Attacks, Intrusions, and Defenses, 2013

25 million flows later: large-scale detection of DOM-based XSS.
Proceedings of the 2013 ACM SIGSAC Conference on Computer and Communications Security, 2013

2012
On the Fragility and Limitations of Current Browser-Provided Clickjacking Protection Schemes.
Proceedings of the 6th USENIX Workshop on Offensive Technologies, 2012

Towards stateless, client-side driven Cross-Site Request Forgery protection for Web applications.
Proceedings of the Sicherheit 2012: Sicherheit, 2012

DEMACRO: Defense against Malicious Cross-Domain Requests.
Proceedings of the Research in Attacks, Intrusions, and Defenses, 2012

BetterAuth: web authentication revisited.
Proceedings of the 28th Annual Computer Security Applications Conference, 2012

2011
Biting the Hand That Serves You: A Closer Look at Client-Side Flash Proxies for Cross-Domain Requests.
Proceedings of the Detection of Intrusions and Malware, and Vulnerability Assessment, 2011


  Loading...