{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,11,18]],"date-time":"2025-11-18T12:16:27Z","timestamp":1763468187911,"version":"3.40.3"},"publisher-location":"Cham","reference-count":23,"publisher":"Springer International Publishing","isbn-type":[{"type":"print","value":"9783319075358"},{"type":"electronic","value":"9783319075365"}],"license":[{"start":{"date-parts":[[2014,1,1]],"date-time":"2014-01-01T00:00:00Z","timestamp":1388534400000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2014]]},"DOI":"10.1007\/978-3-319-07536-5_30","type":"book-chapter","created":{"date-parts":[[2014,6,4]],"date-time":"2014-06-04T23:14:16Z","timestamp":1401923656000},"page":"513-530","source":"Crossref","is-referenced-by-count":6,"title":["Polymorphism as a Defense for Automated Attack of Websites"],"prefix":"10.1007","author":[{"given":"Xinran","family":"Wang","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Tadayoshi","family":"Kohno","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Bob","family":"Blakley","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","reference":[{"key":"30_CR1","unstructured":"Belgisch gerecht ontdekt oplichting bij internetbankieren (2010) http:\/\/www.hbvl.be\/nieuws\/economie\/aid956766\/belgisch-gerecht-ontdekt-grootschalige-bankfraude.aspx"},{"key":"30_CR2","unstructured":"BIG-IP application security manager (2013), http:\/\/www.f5.com\/pdf\/products\/big-ip-application-security-manager-ds.pdf"},{"key":"30_CR3","unstructured":"Multi-factor authentication (2013), http:\/\/en.wikipedia.org\/wiki\/Multi-factor_authentication"},{"key":"30_CR4","unstructured":"Mykonos web security (2013), http:\/\/www.mykonossoftware.com"},{"key":"30_CR5","first-page":"75","volume-title":"Proceedings of the 15th ACM Conference on Computer and Communications Security, CCS 2008","author":"A. Barth","year":"2008","unstructured":"Barth, A., Jackson, C., Mitchell, J.C.: Robust defenses for cross-site request forgery. In: Proceedings of the 15th ACM Conference on Computer and Communications Security, CCS 2008, pp. 75\u201388. ACM, New York (2008)"},{"issue":"3","key":"30_CR6","doi-asserted-by":"publisher","first-page":"634","DOI":"10.1016\/j.comnet.2012.10.005","volume":"57","author":"Z. Chu","year":"2013","unstructured":"Chu, Z., Gianvecchio, S., Koehl, A., Wang, H., Jajodia, S.: Blog or block: Detecting blog bots through behavioral biometrics. Comput. Netw.\u00a057(3), 634\u2013646 (2013)","journal-title":"Comput. Netw."},{"key":"30_CR7","doi-asserted-by":"crossref","unstructured":"Chu, Z., Gianvecchio, S., Wang, H., Jajodia, S.: Who is tweeting on twitter: Human, bot, or cyborg? In: Proceedings of the 26th Annual Computer Security Applications Conference. ACM, New York (2010)","DOI":"10.1145\/1920261.1920265"},{"key":"30_CR8","unstructured":"Crosby, S.A., Wallach, D.S.: Denial of service via algorithmic complexity attacks. In: Proceedings of the Usenix Security Symposium 2003, Berkeley, CA, USA, pp. 243\u2013255. USENIX Association (2003)"},{"key":"30_CR9","doi-asserted-by":"crossref","unstructured":"Czeskis, A., Moshchuk, A., Kohno, T., Wang, H.J.: Lightweight server support for browser-based csrf protection. In: Proceedings of the 22nd International Conference on World Wide Web, WWW 2013 Companion, Republic and Canton of Geneva, Switzerland, pp. 273\u2013284. International World Wide Web Conferences Steering Committee (2013)","DOI":"10.1145\/2488388.2488413"},{"key":"30_CR10","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1007\/978-3-642-14527-8_1","volume-title":"Privacy Enhancing Technologies","author":"P. Eckersley","year":"2010","unstructured":"Eckersley, P.: How unique is your web browser? In: Atallah, M.J., Hopper, N.J. (eds.) PETS 2010. LNCS, vol.\u00a06205, pp. 1\u201318. Springer, Heidelberg (2010)"},{"key":"30_CR11","unstructured":"Fontana, J.: Password\u2019s rotten core not complexity but reuse (March 2013), http:\/\/www.zdnet.com\/passwords-rotten-core-not-complexity-but-reuse-7000013019\/"},{"key":"30_CR12","first-page":"31","volume-title":"Proceedings of the 39th Annual ACM SIGPLAN-SIGACT Symposium on Principles of Programming Languages, POPL 2012","author":"P.A. Gardner","year":"2012","unstructured":"Gardner, P.A., Maffeis, S., Smith, G.D.: Towards a program logic for JavaScript. In: Proceedings of the 39th Annual ACM SIGPLAN-SIGACT Symposium on Principles of Programming Languages, POPL 2012, pp. 31\u201344. ACM, New York (2012)"},{"key":"30_CR13","first-page":"256","volume-title":"Proceedings of the 16th ACM Conference on Computer and Communications Security, CCS 2009","author":"S. Gianvecchio","year":"2009","unstructured":"Gianvecchio, S., Wu, Z., Xie, M., Wang, H.: Battle of botcraft: Fighting bots in online games with human observational proofs. In: Proceedings of the 16th ACM Conference on Computer and Communications Security, CCS 2009, pp. 256\u2013268. ACM, New York (2009)"},{"key":"30_CR14","first-page":"155","volume-title":"Proceedings of the 17th Conference on Security Symposium, SS 2008","author":"S. Gianvecchio","year":"2008","unstructured":"Gianvecchio, S., Xie, M., Wu, Z., Wang, H.: Measurement and classification of humans and bots in internet chat. In: Proceedings of the 17th Conference on Security Symposium, SS 2008, pp. 155\u2013169. USENIX Association, Berkeley (2008)"},{"key":"30_CR15","unstructured":"Heiderich, M.: Csrfx (2007), http:\/\/php-ids.org\/category\/csrfx\/"},{"key":"30_CR16","doi-asserted-by":"crossref","first-page":"34","DOI":"10.1145\/2338965.2336758","volume-title":"Proceedings of the 2012 International Symposium on Software Testing and Analysis","author":"S.H. Jensen","year":"2012","unstructured":"Jensen, S.H., Jonsson, P.A., M\u00f8ller, A.: Remedying the eval that men do. In: Proceedings of the 2012 International Symposium on Software Testing and Analysis, pp. 34\u201344. ACM, New York (2012)"},{"key":"30_CR17","doi-asserted-by":"crossref","unstructured":"Jovanovic, N., Kirda, E., Kruegel, C.: Preventing cross site request forgery attacks. In: Second IEEE Communications Society\/CreateNet International Conference on Security and Privacy in Communication Networks. IEEE (2006)","DOI":"10.1109\/SECCOMW.2006.359531"},{"key":"30_CR18","unstructured":"Kee, T.: Beyond cookies: digital fingerprints may track personal devices (December 2010), http:\/\/econsultancy.com"},{"key":"30_CR19","unstructured":"Miessler, D.: Bypassing WAF anti-automation using burp\u2019s cookie jar (September 2013), http:\/\/www.danielmiessler.com"},{"key":"30_CR20","unstructured":"Ollmann, G.: Stopping automated application attack tools. Technical report, Black Hat Europe 2006 (2006)"},{"key":"30_CR21","unstructured":"Sheridan, E.: OWASP CSRFGuard project (2008), http:\/\/www.owasp.org\/index.php\/CSRF_Guard"},{"key":"30_CR22","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"294","DOI":"10.1007\/3-540-39200-9_18","volume-title":"Advances in Cryptology \u2013 EUROCRPYT 2003","author":"L. Ahn von","year":"2003","unstructured":"von Ahn, L., Blum, M., Hopper, N.J., Langford, J.: CAPTCHA: using hard ai problems for security. In: Biham, E. (ed.) EUROCRYPT 2003. LNCS, vol.\u00a02656, pp. 294\u2013311. Springer, Heidelberg (2003)"},{"key":"30_CR23","first-page":"44","volume-title":"Proceedings of the 4th Symposium on Usable Privacy and Security, SOUPS 2008","author":"J. Yan","year":"2008","unstructured":"Yan, J., El Ahmad, A.S.: Usability of CAPTCHAs or usability issues in CAPTCHA design. In: Proceedings of the 4th Symposium on Usable Privacy and Security, SOUPS 2008, pp. 44\u201352. ACM, New York (2008)"}],"container-title":["Lecture Notes in Computer Science","Applied Cryptography and Network Security"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-319-07536-5_30","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,4,6]],"date-time":"2022-04-06T00:25:57Z","timestamp":1649204757000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-319-07536-5_30"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2014]]},"ISBN":["9783319075358","9783319075365"],"references-count":23,"URL":"https:\/\/doi.org\/10.1007\/978-3-319-07536-5_30","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2014]]}}}