{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,11,24]],"date-time":"2025-11-24T07:09:17Z","timestamp":1763968157965,"version":"3.41.0"},"publisher-location":"New York, NY, USA","reference-count":31,"publisher":"ACM","license":[{"start":{"date-parts":[[2015,10,12]],"date-time":"2015-10-12T00:00:00Z","timestamp":1444608000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"funder":[{"name":"Ministry of Science and Technology Israel"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2015,10,12]]},"DOI":"10.1145\/2810103.2813688","type":"proceedings-article","created":{"date-parts":[[2015,10,6]],"date-time":"2015-10-06T15:22:12Z","timestamp":1444144932000},"page":"1394-1405","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":22,"title":["Cross-Site Search Attacks"],"prefix":"10.1145","author":[{"given":"Nethanel","family":"Gelernter","sequence":"first","affiliation":[{"name":"Bar Ilan University, Ramat Gan, Israel"}]},{"given":"Amir","family":"Herzberg","sequence":"additional","affiliation":[{"name":"Bar Ilan University, Ramat Gan, Israel"}]}],"member":"320","published-online":{"date-parts":[[2015,10,12]]},"reference":[{"key":"e_1_3_2_1_1_1","unstructured":"Apache-Commons. Commons Math: The Apache Commons Mathematics Library. online.  Apache-Commons. Commons Math: The Apache Commons Mathematics Library. online."},{"key":"e_1_3_2_1_2_1","doi-asserted-by":"publisher","DOI":"10.1145\/1455770.1455782"},{"key":"e_1_3_2_1_3_1","doi-asserted-by":"publisher","DOI":"10.5555\/646763.706320"},{"key":"e_1_3_2_1_4_1","doi-asserted-by":"publisher","DOI":"10.1145\/1242572.1242656"},{"key":"e_1_3_2_1_5_1","doi-asserted-by":"publisher","DOI":"10.1145\/2636328"},{"key":"e_1_3_2_1_6_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.comnet.2005.01.010"},{"key":"e_1_3_2_1_7_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2010.20"},{"key":"e_1_3_2_1_8_1","doi-asserted-by":"publisher","DOI":"10.1145\/293347.293350"},{"volume-title":"SQL injection attacks and defense","year":"2012","author":"Clarke J.","key":"e_1_3_2_1_9_1"},{"key":"e_1_3_2_1_10_1","doi-asserted-by":"publisher","DOI":"10.1145\/1455526.1455530"},{"key":"e_1_3_2_1_11_1","doi-asserted-by":"publisher","DOI":"10.1145\/2488388.2488413"},{"key":"e_1_3_2_1_12_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2012.28"},{"volume-title":"December","year":"2009","author":"Evans C.","key":"e_1_3_2_1_13_1"},{"key":"e_1_3_2_1_14_1","doi-asserted-by":"publisher","DOI":"10.1145\/352600.352606"},{"volume-title":"The ND2DB attack: Database content extraction using timing attacks on the indexing algorithms","year":"2007","author":"Futoransky A.","key":"e_1_3_2_1_15_1"},{"key":"e_1_3_2_1_16_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-31680-7_6"},{"key":"e_1_3_2_1_17_1","doi-asserted-by":"publisher","DOI":"10.1145\/233551.233553"},{"key":"e_1_3_2_1_18_1","unstructured":"Google. Advanced search. https:\/\/support.google.com\/mail\/answer\/7190?hl=en.  Google. Advanced search. https:\/\/support.google.com\/mail\/answer\/7190?hl=en."},{"key":"e_1_3_2_1_19_1","unstructured":"Google. Standard view and basic html view. https:\/\/support.google.com\/mail\/answer\/15049?ctx=gmail.  Google. Standard view and basic html view. https:\/\/support.google.com\/mail\/answer\/15049?ctx=gmail."},{"key":"e_1_3_2_1_20_1","first-page":"621","volume-title":"USENIX Security","author":"Johns M.","year":"2013"},{"key":"e_1_3_2_1_21_1","doi-asserted-by":"publisher","DOI":"10.1109\/SECCOMW.2006.359531"},{"key":"e_1_3_2_1_22_1","first-page":"1","volume-title":"About cryptographic engineering","author":"C. K.","year":"2009"},{"key":"e_1_3_2_1_23_1","series-title":"LNCS","first-page":"104","volume-title":"CRYPTO'96","author":"Kocher P. C.","year":"1996"},{"volume-title":"Testing statistical hypotheses. springer","year":"2006","author":"Lehmann E. L.","key":"e_1_3_2_1_24_1"},{"key":"e_1_3_2_1_25_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-03549-4_15"},{"key":"e_1_3_2_1_26_1","unstructured":"Microsoft. Internet Explorer Dev Center - Timing and Performance APIs. http:\/\/msdn.microsoft.com\/en-us\/library\/ie\/hh772738(v=vs.85).aspx.  Microsoft. Internet Explorer Dev Center - Timing and Performance APIs. http:\/\/msdn.microsoft.com\/en-us\/library\/ie\/hh772738(v=vs.85).aspx."},{"key":"e_1_3_2_1_27_1","unstructured":"Nethanel Gelernter and Amir Herzberg . Cross-Site Search Attacks technical report 15-01. http:\/\/u.cs.biu.ac.il\/ herzbea\/security\/15-01-XSSearch.pdf August 2015.  Nethanel Gelernter and Amir Herzberg . Cross-Site Search Attacks technical report 15-01. http:\/\/u.cs.biu.ac.il\/ herzbea\/security\/15-01-XSSearch.pdf August 2015."},{"volume-title":"May","year":"2015","author":"Gelernter Nethanel","key":"e_1_3_2_1_28_1"},{"key":"e_1_3_2_1_29_1","unstructured":"Paul Petefish Eric Sheridan and Dave Wichers. Cross-Site Request Forgery (CSRF) Prevention Cheat Sheet. https:\/\/www.owasp.org\/index.php\/Cross-Site_Request_Forgery_(CSRF)_Prevention_Cheat_Sheet.  Paul Petefish Eric Sheridan and Dave Wichers. Cross-Site Request Forgery (CSRF) Prevention Cheat Sheet. https:\/\/www.owasp.org\/index.php\/Cross-Site_Request_Forgery_(CSRF)_Prevention_Cheat_Sheet."},{"volume-title":"Proc. of L-SEC\/CALIT IT Security Congress (October 19--20, 2006","year":"2011","author":"Shamir A.","key":"e_1_3_2_1_30_1"},{"key":"e_1_3_2_1_31_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2011.23"}],"event":{"name":"CCS'15: The 22nd ACM Conference on Computer and Communications Security","sponsor":["SIGSAC ACM Special Interest Group on Security, Audit, and Control"],"location":"Denver Colorado USA","acronym":"CCS'15"},"container-title":["Proceedings of the 22nd ACM SIGSAC Conference on Computer and Communications Security"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/2810103.2813688","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/2810103.2813688","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T05:48:24Z","timestamp":1750225704000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/2810103.2813688"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2015,10,12]]},"references-count":31,"alternative-id":["10.1145\/2810103.2813688","10.1145\/2810103"],"URL":"https:\/\/doi.org\/10.1145\/2810103.2813688","relation":{},"subject":[],"published":{"date-parts":[[2015,10,12]]},"assertion":[{"value":"2015-10-12","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}