Modern threats and ways to secure web applications.
Abstract
The complexity of the developed web applications is growing every year, which, in turn, makes it difficult to ensure their security. That is why it is advisable to pay special attention to the critical problems of software protection. The ability to assess risks and prevent vulnerabilities at the product design stage is an extremely important task, which reduces the potential difficulties in the operation of the application. In recent years, the number of data breaches in all market sectors has decreased, but their consequences have become more dangerous. Among all attacks, attacks on web applications account for more than 50 percent. According to the OWASP Top Ten list of the vulnerabilities, the relevant categories of vulnerabilities and directions of attacks on existing web applications were worked out in the work. Effective ways of their prevention are considered. Recommendations for implementing and maintaining the security of applications developed using the ReactJS library are provided. The most common security threats to React-based products throughout the application life cycle have been identified. Modern way of ReactJS optimization are considered.
Downloads
References
Inamdar, D. M., & Gupta, S. (2020). A Survey on Web Application Security. International Journal of Scientific Research in Computer Science, Engineering and Information Technology, (6), 223-228.
RiskBased Security, 2021 Mid Year Data Breach QuickView Report. (2021). Вилучено з https://pages.riskbasedsecurity.com/download-the-2021-mid-year-data-breach-quickview-report-today
Help Net Security. Web app attacks are skyrocketing, it’s time to protect APIs. (2021). Вилучено з https://www.helpnetsecurity.com/2021/12/27/web-app-attacks-increased/
Dark Reading, WhiteHat Security: 50% of Apps Are Vulnerable. (2021). Вилучено з https://www.darkreading.com/application-security/whitehat-security-50-of-apps-are-vulnerable
Imaginary Cloud, Angular vs React: a comparison of both frameworks. (2020). Вилучено з https://www.imaginarycloud.com/blog/angular-vs-react/
AltexSoft, The Good and the Bad of Node.js Web App Programming. (2022). Вилучено з https://www.altexsoft.com/blog/ engineering/the-good-and-the-bad-of-node-js-web-app-development/
OWASP Top Ten – 2021. (2021). Вилучено з https://owasp.org/www-project-top-ten/
React.js security best practices. (2020). Вилучено з https://upplabs.medium.com/react-js-security-best-practices-62b9a281cc42