{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,28]],"date-time":"2026-04-28T01:09:51Z","timestamp":1777338591615,"version":"3.51.4"},"publisher-location":"New York, NY, USA","reference-count":22,"publisher":"ACM","license":[{"start":{"date-parts":[[2023,10,16]],"date-time":"2023-10-16T00:00:00Z","timestamp":1697414400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"funder":[{"name":"National Science Fundation","award":["CNS- 2149950"],"award-info":[{"award-number":["CNS- 2149950"]}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2023,10,23]]},"DOI":"10.1145\/3565287.3617625","type":"proceedings-article","created":{"date-parts":[[2023,9,28]],"date-time":"2023-09-28T19:59:44Z","timestamp":1695931184000},"page":"474-479","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":3,"title":["Taking a Look into the Cookie Jar: A Comprehensive Study towards the Security of Web Cookies"],"prefix":"10.1145","author":[{"ORCID":"https:\/\/orcid.org\/0009-0004-8493-7921","authenticated-orcid":false,"given":"Sean","family":"Chen","sequence":"first","affiliation":[{"name":"Texas A&amp;M University, College Station, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0009-0001-2207-185X","authenticated-orcid":false,"given":"Jaelyn","family":"McCracken","sequence":"additional","affiliation":[{"name":"Towson University, Towson, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0009-0001-9300-3643","authenticated-orcid":false,"given":"Kevin","family":"Lu","sequence":"additional","affiliation":[{"name":"St. Mark's School of Texas, Dallas, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-9744-107X","authenticated-orcid":false,"given":"Tao","family":"Wang","sequence":"additional","affiliation":[{"name":"University of North Carolina at Charlotte, Charlotte, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-3775-6170","authenticated-orcid":false,"given":"Tao","family":"Hou","sequence":"additional","affiliation":[{"name":"Texas State University, San Marcos, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2023,10,16]]},"reference":[{"key":"e_1_3_2_1_1_1","volume-title":"IEEE International Conference on Communications (IEEE ICC'23)","author":"Alanazi Hamidah","year":"2023","unstructured":"Hamidah Alanazi , Shengping Bi , Tao Wang , and Tao Hou . Exquisite feature selection for machine learning powered probing attack detection . In IEEE International Conference on Communications (IEEE ICC'23) . IEEE, 2023 . Hamidah Alanazi, Shengping Bi, Tao Wang, and Tao Hou. Exquisite feature selection for machine learning powered probing attack detection. In IEEE International Conference on Communications (IEEE ICC'23). IEEE, 2023."},{"key":"e_1_3_2_1_2_1","first-page":"4","article-title":"Http state management mechanism","volume":"6265","author":"Barth A.","year":"2011","unstructured":"A. Barth . Http state management mechanism . RFC 6265 , RFC Editor, 4 2011 . A. Barth. Http state management mechanism. RFC 6265, RFC Editor, 4 2011.","journal-title":"RFC"},{"key":"e_1_3_2_1_3_1","first-page":"222","volume-title":"Proceedings of the 15th ACM Conference on Security and Privacy in Wireless and Mobile Networks (ACM WiSec'22)","author":"Bi Shengping","year":"2022","unstructured":"Shengping Bi , Tao Hou , Tao Wang , Yao Liu , Zhuo Lu , and Qingqi Pei . Dywcp : Dynamic and lightweight data-channel coupling towards confidentiality in iot security . In Proceedings of the 15th ACM Conference on Security and Privacy in Wireless and Mobile Networks (ACM WiSec'22) , pages 222 -- 232 , 2022 . Shengping Bi, Tao Hou, Tao Wang, Yao Liu, Zhuo Lu, and Qingqi Pei. Dywcp: Dynamic and lightweight data-channel coupling towards confidentiality in iot security. In Proceedings of the 15th ACM Conference on Security and Privacy in Wireless and Mobile Networks (ACM WiSec'22), pages 222--232, 2022."},{"key":"e_1_3_2_1_4_1","unstructured":"Dan BonehJo. Web security: Session management.  Dan BonehJo. Web security: Session management."},{"key":"e_1_3_2_1_5_1","doi-asserted-by":"publisher","DOI":"10.1109\/MSP.2009.12"},{"key":"e_1_3_2_1_6_1","first-page":"151","volume-title":"27th USENIX Security Symposium (USENIX Security 18)","author":"Franken Gertjan","year":"2018","unstructured":"Gertjan Franken , Tom Van Goethem , and Wouter Joosen . Who left open the cookie jar? a comprehensive evaluation of Third-Party cookie policies . In 27th USENIX Security Symposium (USENIX Security 18) , pages 151 -- 168 , Baltimore, MD , August 2018 . USENIX Association. Gertjan Franken, Tom Van Goethem, and Wouter Joosen. Who left open the cookie jar? a comprehensive evaluation of Third-Party cookie policies. In 27th USENIX Security Symposium (USENIX Security 18), pages 151--168, Baltimore, MD, August 2018. USENIX Association."},{"key":"e_1_3_2_1_7_1","doi-asserted-by":"publisher","DOI":"10.1007\/s13198-015-0376-0"},{"key":"e_1_3_2_1_8_1","unstructured":"Hamish Willee. Set-cookie 2023. https:\/\/developer.mozilla.org\/en-US\/docs\/Web\/HTTP\/Headers\/Set-Cookie\" addendum Last accessed on 2023-08-10.  Hamish Willee. Set-cookie 2023. https:\/\/developer.mozilla.org\/en-US\/docs\/Web\/HTTP\/Headers\/Set-Cookie\" addendum Last accessed on 2023-08-10."},{"key":"e_1_3_2_1_9_1","doi-asserted-by":"publisher","DOI":"10.1109\/INFOCOM48880.2022.9796815"},{"key":"e_1_3_2_1_10_1","first-page":"290","volume-title":"2022 IEEE Conference on Communications and Network Security (CNS)","author":"Hou Tao","year":"2022","unstructured":"Tao Hou , Shengping Bi , Mingkui Wei , Tao Wang , Zhuo Lu , and Yao Liu . When third-party javascript meets cache: Explosively amplifying security risks on the internet . In 2022 IEEE Conference on Communications and Network Security (CNS) , pages 290 -- 298 . IEEE, 2022 . Tao Hou, Shengping Bi, Mingkui Wei, Tao Wang, Zhuo Lu, and Yao Liu. When third-party javascript meets cache: Explosively amplifying security risks on the internet. In 2022 IEEE Conference on Communications and Network Security (CNS), pages 290--298. IEEE, 2022."},{"key":"e_1_3_2_1_11_1","doi-asserted-by":"publisher","DOI":"10.1109\/INFOCOM41043.2020.9155255"},{"key":"e_1_3_2_1_12_1","first-page":"1","volume-title":"2019 IEEE Global Conference on Signal and Information Processing (GlobalSIP)","author":"Hou Tao","year":"2019","unstructured":"Tao Hou , Tao Wang , Zhuo Lu , and Yao Liu . Smart spying via deep learning: inferring your activities from encrypted wireless traffic . In 2019 IEEE Global Conference on Signal and Information Processing (GlobalSIP) , pages 1 -- 5 . IEEE, 2019 . Tao Hou, Tao Wang, Zhuo Lu, and Yao Liu. Smart spying via deep learning: inferring your activities from encrypted wireless traffic. In 2019 IEEE Global Conference on Signal and Information Processing (GlobalSIP), pages 1--5. IEEE, 2019."},{"key":"e_1_3_2_1_13_1","doi-asserted-by":"publisher","DOI":"10.1109\/TNET.2021.3101692"},{"key":"e_1_3_2_1_14_1","doi-asserted-by":"publisher","DOI":"10.1109\/DySPAN53946.2021.9677264"},{"key":"e_1_3_2_1_15_1","doi-asserted-by":"publisher","DOI":"10.1145\/3447535.3462509"},{"key":"e_1_3_2_1_16_1","doi-asserted-by":"publisher","DOI":"10.1145\/1982185.1982511"},{"key":"e_1_3_2_1_17_1","doi-asserted-by":"crossref","first-page":"20","DOI":"10.1109\/ICSSA.2017.9","volume-title":"2017 International Conference on Software Security and Assurance (ICSSA)","author":"LaCroix Kenneth","year":"2017","unstructured":"Kenneth LaCroix , Yin L Loo , and Young B Choi . Cookies and sessions: a study of what they are, how they work and how they can be stolen . In 2017 International Conference on Software Security and Assurance (ICSSA) , pages 20 -- 24 . IEEE, 2017 . Kenneth LaCroix, Yin L Loo, and Young B Choi. Cookies and sessions: a study of what they are, how they work and how they can be stolen. In 2017 International Conference on Software Security and Assurance (ICSSA), pages 20--24. IEEE, 2017."},{"key":"e_1_3_2_1_18_1","doi-asserted-by":"publisher","DOI":"10.1145\/997150.997156"},{"key":"e_1_3_2_1_19_1","unstructured":"Mozilla Developer Network. Using http cookies. https:\/\/developer.mozilla.org\/en-US\/docs\/Web\/HTTP\/Cookies.  Mozilla Developer Network. Using http cookies. https:\/\/developer.mozilla.org\/en-US\/docs\/Web\/HTTP\/Cookies."},{"key":"e_1_3_2_1_20_1","unstructured":"Selenium. Selenium automates browsers.primarily it is for automating web applications for testing purposes but is certainly not limited to just that. https:\/\/www.selenium.dev.  Selenium. Selenium automates browsers.primarily it is for automating web applications for testing purposes but is certainly not limited to just that. https:\/\/www.selenium.dev."},{"key":"e_1_3_2_1_21_1","first-page":"239","volume-title":"DIMVA 2015, Milan, Italy, July 9-10, 2015, Proceedings 12","author":"Shernan Ethan","year":"2015","unstructured":"Ethan Shernan , Henry Carter , Dave Tian , Patrick Traynor , and Kevin Butler . More guidelines than rules: Csrf vulnerabilities from noncompliant oauth 2.0 implementations. In Detection of Intrusions and Malware, and Vulnerability Assessment: 12th International Conference , DIMVA 2015, Milan, Italy, July 9-10, 2015, Proceedings 12 , pages 239 -- 260 . Springer , 2015 . Ethan Shernan, Henry Carter, Dave Tian, Patrick Traynor, and Kevin Butler. More guidelines than rules: Csrf vulnerabilities from noncompliant oauth 2.0 implementations. In Detection of Intrusions and Malware, and Vulnerability Assessment: 12th International Conference, DIMVA 2015, Milan, Italy, July 9-10, 2015, Proceedings 12, pages 239--260. Springer, 2015."},{"key":"e_1_3_2_1_22_1","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2016.2614820"}],"event":{"name":"MobiHoc '23: Twenty-fourth International Symposium on Theory, Algorithmic Foundations, and Protocol Design for Mobile Networks and Mobile Computing","location":"Washington DC USA","acronym":"MobiHoc '23","sponsor":["SIGMOBILE ACM Special Interest Group on Mobility of Systems, Users, Data and Computing"]},"container-title":["Proceedings of the Twenty-fourth International Symposium on Theory, Algorithmic Foundations, and Protocol Design for Mobile Networks and Mobile Computing"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3565287.3617625","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"}],"deposited":{"date-parts":[[2025,6,17]],"date-time":"2025-06-17T16:37:44Z","timestamp":1750178264000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3565287.3617625"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2023,10,16]]},"references-count":22,"alternative-id":["10.1145\/3565287.3617625","10.1145\/3565287"],"URL":"https:\/\/doi.org\/10.1145\/3565287.3617625","relation":{},"subject":[],"published":{"date-parts":[[2023,10,16]]},"assertion":[{"value":"2023-10-16","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}