Welcome to Journal of University of Chinese Academy of Sciences,Today is

›› 2013, Vol. 30 ›› Issue (1): 124-130.DOI: 10.7523/j.issn.1002-1175.2013.01.019

• Research Articles • Previous Articles     Next Articles

Secure cross-document messaging scheme based on HTML5

LI Xiao-Yu, ZHANG Yu-Qing, LIU Qi-Xu, ZHENG Chen   

  1. National Computer Network Instrusion Protection Center, Graduate University, Chinese Academy of Sciences, Beijing 100049, China
  • Received:2011-12-09 Revised:2012-03-22 Online:2013-01-15

Abstract:

We analyze security risk of the current cross-document messaging methods based on HTML5 and propose a secure cross-document messaging scheme SafePM. In SafePM, white list, two-way detection, and auto-detecting are developed to limit maliciously messaging. Moreover, with the detection of the message content, SafePM eliminates information leakage and tampering and reduce the risk for executing of cross-site scripts, which makes cross-document messaging more secure.

Key words: HTML5, cross-document messaging, white list, two-way detection, SafePM

CLC Number: