Deobfuscation and Analysis of Client-Side JavaScript Code to Detect DOM-Based XSS
Andrey Kozlov
Security Analysis Specialist, Kaspersky Lab
The main objective of this talk is to describe a new automated JavaScript code analysis method developed by the presenter, using static and dynamic analysis, and to compare its results with existing automated web vulnerability scanners.