@article{1451, author = {Ravi Kishore K, Mallesh M, Jyostna G, P R L Eswari, Samavedam Satyanadha Sarma}, title = {Javascript Defender: Malicious Javascript based Drive by Download Attack Analyzer and Defender}, journal = {Journal of Information Security Research}, year = {2014}, volume = {5}, number = {1}, doi = {}, url = {http://www.dline.info/jisr/fulltext/v5n1/1.pdf}, abstract = {Now-a-days, most of the people are relying on internet for their day to day activities. Attackers are taking this high usage of internet as an advantage and trying to attack the users. Attackers are infecting the vulnerable web applications by injecting malicious code into its webpages. Whenever user browses the infected website knowingly or unknowingly, the malicious code is downloaded into his system by exploiting the vulnerabilities in the browser. With this, attacker gets the control over the user’s system to perform malicious operations.Attacker may also use the infected system as a hop point for redirecting other users to his malicious server through which he can download the malicious codes. These kind of attacks are known as Drive by Download attacks. In recent times, Drive by Download is the major channel for propagating the malware. In this paper, JavaScript Defender is presented for analyzing and defending against the HTML and JavaScript based Drive by Download attacks.}, }