  1. 1. Web Application Content Security

    Författare :Daniel Hausknecht; Chalmers University of Technology; []
    Nyckelord :NATURVETENSKAP; NATURAL SCIENCES; Content Security Policy; crawling; web application security; web security; client side; security HTTP headers;

    The web has become ubiquitous in modern lives. People go online to stay in contact with their friends or to manage their bank account. With lots of different sensitive information handled by web applications securing them naturally becomes important.

  2. 2. Lightweight Enforcement of Fine-Grained Security Policies for Untrusted Software

    Författare :Phu Phung; Chalmers University of Technology; []
    Nyckelord :NATURVETENSKAP; NATURAL SCIENCES; security policy enforcement; JavaScript security; web-application security; vehicle software security; untrusted software;

    This thesis presents an innovative approach to implementing a security enforcement mechanism in the contexts of untrusted software systems, where a piece of code in a base system may come from an untrusted third party. The key point of the approach is that it is lightweight in the sense that it does not need an additional policy language or extra tool.

  3. 3. Security Analysis of Web and Embedded Applications

    Författare :Benjamin Eriksson; Chalmers University of Technology; []
    Nyckelord :NATURVETENSKAP; TEKNIK OCH TEKNOLOGIER; NATURAL SCIENCES; ENGINEERING AND TECHNOLOGY; Content Security Policy; Android Automotive; Vulnerabilities; Web application scanning;

    As we put more trust in the computer systems we use the need for security is increasing. And while security features like HTTPS are becoming commonplace on the web, securing applications remains dicult. This thesis focuses on analyzing dierent computer ecosystems to detect vulnerabilities and develop countermeasures.

  4. 4. MobiLeak : Security and Privacy of Personal Data in Mobile Applications

    Författare :Pasquale Stirparo; Sead Muftic; Steven Marcus Furnell; KTH; []
    Nyckelord :ENGINEERING AND TECHNOLOGY; TEKNIK OCH TEKNOLOGIER; mobile application; security; privacy; android; forensics; malware; Informations- och kommunikationsteknik; Information and Communication Technology; Datalogi; Computer Science;

    Smartphones and mobile applications have become an essential part of our daily lives. People always carry their smartphones with them and rely on mobile applications for most of their tasks: from checking emails for personal or business purposes, to engaging in social interactions via social networks, from trading online or checking their bank accounts to communicating with families and friends through instant messaging applications.

  5. 5. A Framework and Calculation Engine for Modeling and Predicting the Cyber Security of Enterprise Architectures

    Författare :Hannes Holm; Mathias Ekstedt; Robert Lagerström; Göran Ericsson; Ketil Stølen; KTH; []
    Nyckelord :NATURAL SCIENCES; NATURVETENSKAP; NATURVETENSKAP; NATURAL SCIENCES; Computer security; security metrics; vulnerability assessment; attack graphs; risk management; architecture modeling; Enterprise Architecture; Cybersäkerhet; säkerhetsmetriker; sårbarhetsanalys; attackgrafer; riskhantering; arkitekturmodellering; organisationsövergripande arkitektur;

    Information Technology (IT) is a cornerstone of our modern society and essential for governments' management of public services, economic growth and national security. Consequently, it is of importance that IT systems are kept in a dependable and secure state.