With exponential increased usage of browser extensions for smooth and effortless browsing experience, preventing exposure of user’s private and sensitive data for malicious intent becomes a perpetual challenging task for security researchers. To address this potential threat, extensive work has been carried out to develop a Chrome Browser Extension Analysis Tool, CBEAT. Exclusivity of CBEAT lies in performing holistic analysis combining manifest analysis and JavaScript static taint analysis of manifest and JavaScript files of Chrome Extensions. CBEAT calculates an extension score based on both analysis mentioned above. This score is subsequently used to arrive at classification of the extension and classified as high, medium and low in exposing user’s private and sensitive data. Out of tested Chrome extensions, this paper finds 40% of them as low, 32% as medium and 28% as high.
CITATION STYLE
Roy, S. S., & Jevitha, K. P. (2017). CBEAT: Chrome Browser Extension Analysis Tool. In Communications in Computer and Information Science (Vol. 746, pp. 364–378). Springer Verlag. https://doi.org/10.1007/978-981-10-6898-0_30
Mendeley helps you to discover research relevant for your work.