• Journal of Internet Computing and Services
    ISSN 2287 - 1136 (Online) / ISSN 1598 - 0170 (Print)
    https://jics.or.kr/

A Study on Data Security of Web Local Storage


Ji-soo Kim, Jong-sub Moon, Journal of Internet Computing and Services, Vol. 17, No. 3, pp. 55-66, Jun. 2016
10.7472/jksii.2016.17.3.55, Full Text:
Keywords: Local Storage, integrity, Confidentiality, Encrypt, Hash

Abstract

A local storage of HTML5 is a Web Storage, which is stored permanently on a local computer in the form of files. The contents of the storage can be easily accessed and modified because it is stored as plaintext. Moreover, because the internet browser classifies the local storages of each domain using file names, the malicious attacker can abuse victim's local storage files by changing file names. In the paper, we propose a scheme to maintain the integrity and the confidentiality of the local storage's source domain and source device. The key idea is that the client encrypts the data stored in the local storage with cipher key, which is managed by the web server. On the step of requesting the cipher key, the web server authenticates whether the client is legal source of local storage or not. Finally, we showed that our method can detect an abnormal access to the local storage through experiments according to the proposed method.


Statistics
Show / Hide Statistics

Statistics (Cumulative Counts from November 1st, 2017)
Multiple requests among the same browser session are counted as one view.
If you mouse over a chart, the values of data points will be shown.


Cite this article
[APA Style]
Kim, J. & Moon, J. (2016). A Study on Data Security of Web Local Storage. Journal of Internet Computing and Services, 17(3), 55-66. DOI: 10.7472/jksii.2016.17.3.55.

[IEEE Style]
J. Kim and J. Moon, "A Study on Data Security of Web Local Storage," Journal of Internet Computing and Services, vol. 17, no. 3, pp. 55-66, 2016. DOI: 10.7472/jksii.2016.17.3.55.

[ACM Style]
Ji-soo Kim and Jong-sub Moon. 2016. A Study on Data Security of Web Local Storage. Journal of Internet Computing and Services, 17, 3, (2016), 55-66. DOI: 10.7472/jksii.2016.17.3.55.