loading
Documents

Research.Publish.Connect.

Paper

Authors: Tanvi Vyas ; Andrea Marchesini and Christoph Kerschbaumer

Affiliation: Mozilla Corporation, United States

ISBN: 978-989-758-209-7

Keyword(s): Browser Privacy, Browser Security, Origin Isolation, Cookies, Web Tracking.

Related Ontology Subjects/Areas/Topics: Information and Systems Security ; Privacy Enhancing Technologies

Abstract: : The Same Origin Policy (SOP) builds the foundation of the current web security model. As the web evolves, numerous new specifications propose extensions to the SOP in order to improve site security or improve user privacy. Site operators benefit from an extension to the SOP because it allows sites to partition their physical origin space into many different contexts, each representing their own abstract origin. Users benefit from an extension to the SOP because it allows users to separate user data for privacy purposes and enables richer browsing experiences. Implementing any of these new features requires tremendous engineering effort for browser vendors and entails the risk of introducing new privacy concerning vulnerabilities for end users. Instead of spending considerable engineering effort to patch the browser for every new specification that proposes to extend the SOP, we re-design a web browsers architecture and build Origin Attributes directly into a browsers rendering engin e. Our implementation allows any specification or web technology to integrate into Origin Attributes with minimal engineering effort and reduces the risk of jeopardizing an end user’s security or privacy. (More)

PDF ImageFull Text

Download
CC BY-NC-ND 4.0

Sign In Guest: Register as new SciTePress user now for free.

Sign In SciTePress user: please login.

PDF ImageMy Papers

You are not signed in, therefore limits apply to your IP address 3.227.235.71

In the current month:
Recent papers: 100 available of 100 total
2+ years older papers: 200 available of 200 total

Paper citation in several formats:
Vyas, T.; Marchesini, A. and Kerschbaumer, C. (2017). Extending the Same Origin Policy with Origin Attributes.In Proceedings of the 3rd International Conference on Information Systems Security and Privacy - Volume 1: ICISSP, ISBN 978-989-758-209-7, pages 464-473. DOI: 10.5220/0006210404640473

@conference{icissp17,
author={Tanvi Vyas. and Andrea Marchesini. and Christoph Kerschbaumer.},
title={Extending the Same Origin Policy with Origin Attributes},
booktitle={Proceedings of the 3rd International Conference on Information Systems Security and Privacy - Volume 1: ICISSP,},
year={2017},
pages={464-473},
publisher={SciTePress},
organization={INSTICC},
doi={10.5220/0006210404640473},
isbn={978-989-758-209-7},
}

TY - CONF

JO - Proceedings of the 3rd International Conference on Information Systems Security and Privacy - Volume 1: ICISSP,
TI - Extending the Same Origin Policy with Origin Attributes
SN - 978-989-758-209-7
AU - Vyas, T.
AU - Marchesini, A.
AU - Kerschbaumer, C.
PY - 2017
SP - 464
EP - 473
DO - 10.5220/0006210404640473

Login or register to post comments.

Comments on this Paper: Be the first to review this paper.