{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,6,19]],"date-time":"2025-06-19T04:25:02Z","timestamp":1750307102277,"version":"3.41.0"},"reference-count":18,"publisher":"Association for Computing Machinery (ACM)","issue":"6","license":[{"start":{"date-parts":[[2012,11,27]],"date-time":"2012-11-27T00:00:00Z","timestamp":1353974400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":["SIGSOFT Softw. Eng. Notes"],"published-print":{"date-parts":[[2012,11,27]]},"abstract":"<jats:p>Variability (the ability of a software system or software artifact to be adapted for use in a specific context) is reflected in and facilitated through the software architecture. The Second International Workshop on Variability in Software Architecture (VARSA) was held in conjunction with the Joint 10th Working IEEE\/IFIP Conference on Software Architecture &amp; 6th European Conference on Software Architecture 2012 in Helsinki, Finland. The workshop aimed at exploring current and emerging methods, languages, notations technologies and tools to model, implement, and manage variability in the software architecture. It featured one industrial talk, five research paper presentations, and three working group discussions. Working groups discussed topics that emerged during the workshop. This report summarizes the themes of the workshop and presents the results of the working group discussions.<\/jats:p>","DOI":"10.1145\/2382756.2382768","type":"journal-article","created":{"date-parts":[[2012,11,29]],"date-time":"2012-11-29T15:02:27Z","timestamp":1354201347000},"page":"1-9","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":4,"title":["Prevention of XSS attacks using STCD"],"prefix":"10.1145","volume":"37","author":[{"given":"Siva","family":"Brahmasani","sequence":"first","affiliation":[{"name":"NIT Trichy"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Subramanian","family":"Selvakumar","sequence":"additional","affiliation":[{"name":"NIT Trichy"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"E.","family":"Sivasankar","sequence":"additional","affiliation":[{"name":"NIT Trichy"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2013,1,23]]},"reference":[{"key":"e_1_2_1_1_1","volume-title":"How safe is it out there? http:\/\/www.imperva.com\/download.asp?id=23","author":"Surf M.","year":"2004","unstructured":"M. Surf and A. Shulman . How safe is it out there? http:\/\/www.imperva.com\/download.asp?id=23 , 2004 . M. Surf and A. Shulman. How safe is it out there? http:\/\/www.imperva.com\/download.asp?id=23, 2004."},{"key":"e_1_2_1_2_1","doi-asserted-by":"crossref","first-page":"19","DOI":"10.1787\/9789264037472-en","volume-title":"Technology and Industry, Participative Web and User-Created Content: Web 2.0, Wikis and Social Networking","author":"Science OECD","year":"2007","unstructured":"OECD Directorate for Science , Technology and Industry, Participative Web and User-Created Content: Web 2.0, Wikis and Social Networking , OECD Publishing , Oct. 2007 Ch. 2, pp. 19 -- 25 . OECD Directorate for Science, Technology and Industry, Participative Web and User-Created Content: Web 2.0, Wikis and Social Networking, OECD Publishing, Oct. 2007 Ch. 2, pp.19--25."},{"key":"e_1_2_1_3_1","unstructured":"S. Cook. A Web developers guide to cross-site scripting. http:\/\/www.giac.org\/practical\/GSEC\/Steve Cook GSEC.pdf 2003.  S. Cook. A Web developers guide to cross-site scripting. http:\/\/www.giac.org\/practical\/GSEC\/Steve Cook GSEC.pdf 2003."},{"key":"e_1_2_1_4_1","unstructured":"D. Hu. Preventing cross-site scripting vulnerability. http:\/\/www.giac.org\/practical\/GSEC\/DeyuHuGSEC.pdf 2004.  D. Hu. Preventing cross-site scripting vulnerability. http:\/\/www.giac.org\/practical\/GSEC\/DeyuHuGSEC.pdf 2004."},{"key":"e_1_2_1_5_1","volume-title":"Technical report","author":"Cook Steven","year":"2003","unstructured":"Steven Cook . A Web Developer's Guide to CrossSiteScripting , Technical report , SANS Institute , 2003 . Steven Cook. A Web Developer's Guide to CrossSiteScripting, Technical report, SANS Institute, 2003."},{"key":"e_1_2_1_6_1","unstructured":"http:\/\/en.wikipedia.org\/wiki\/Cross-site_scripting.  http:\/\/en.wikipedia.org\/wiki\/Cross-site_scripting."},{"key":"e_1_2_1_7_1","unstructured":"http:\/\/www.grc.com\/sn\/files\/A_Web_Developers_Guide_to_Cross_Site_Scripting.pdf  http:\/\/www.grc.com\/sn\/files\/A_Web_Developers_Guide_to_Cross_Site_Scripting.pdf"},{"key":"e_1_2_1_8_1","unstructured":"Ruder man \"Same origin policy for JavaScript\" 2008 https:\/\/developer.mozilla.org\/en\/Same_origin_policy _for_JavaScript. Retrieved May 2009.  Ruder man \"Same origin policy for JavaScript\" 2008 https:\/\/developer.mozilla.org\/en\/Same_origin_policy _for_JavaScript. Retrieved May 2009."},{"key":"e_1_2_1_9_1","doi-asserted-by":"publisher","DOI":"10.1109\/ARES.2009.19"},{"key":"e_1_2_1_10_1","unstructured":"https:\/\/www.owasp.org\/index.php\/HttpOnly  https:\/\/www.owasp.org\/index.php\/HttpOnly"},{"key":"e_1_2_1_11_1","doi-asserted-by":"publisher","DOI":"10.1145\/1141277.1141357"},{"key":"e_1_2_1_12_1","unstructured":"World Wide Web consortium \"Document Object Model level 2 core specification\" http:\/\/www.w3c.org\/TR\/DOM-level-2-core\/  World Wide Web consortium \"Document Object Model level 2 core specification\" http:\/\/www.w3c.org\/TR\/DOM-level-2-core\/"},{"key":"e_1_2_1_13_1","unstructured":"http:\/\/www.csgnetwork.com\/htmlcodetest.html  http:\/\/www.csgnetwork.com\/htmlcodetest.html"},{"key":"e_1_2_1_14_1","unstructured":"http:\/\/www.draac.com\/htmltester.html  http:\/\/www.draac.com\/htmltester.html"},{"key":"e_1_2_1_15_1","doi-asserted-by":"publisher","DOI":"10.1145\/2020976.2020996"},{"key":"e_1_2_1_16_1","unstructured":"www.mozilla.org\/foundation\/about.html  www.mozilla.org\/foundation\/about.html"},{"key":"e_1_2_1_17_1","unstructured":"https:\/\/developer.mozilla.org\/en\/Windows_build_prerequisites_using_cygwin  https:\/\/developer.mozilla.org\/en\/Windows_build_prerequisites_using_cygwin"},{"key":"e_1_2_1_18_1","unstructured":"XSS-cross site scripting -- prevention cheat sheet - OWASPhttp:\/\/www.owasp.org\/index.php\/XSS_Cross_Site_Scripting_Prevention_Cheat_Sheet  XSS-cross site scripting -- prevention cheat sheet - OWASPhttp:\/\/www.owasp.org\/index.php\/XSS_Cross_Site_Scripting_Prevention_Cheat_Sheet"}],"container-title":["ACM SIGSOFT Software Engineering Notes"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/2382756.2382768","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/2382756.2382768","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T09:34:54Z","timestamp":1750239294000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/2382756.2382768"}},"subtitle":["Server side tagging and client side differentiation"],"short-title":[],"issued":{"date-parts":[[2012,11,27]]},"references-count":18,"journal-issue":{"issue":"6","published-print":{"date-parts":[[2012,11,27]]}},"alternative-id":["10.1145\/2382756.2382768"],"URL":"https:\/\/doi.org\/10.1145\/2382756.2382768","relation":{},"ISSN":["0163-5948"],"issn-type":[{"type":"print","value":"0163-5948"}],"subject":[],"published":{"date-parts":[[2012,11,27]]},"assertion":[{"value":"2013-01-23","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}