Security and Access Control Inference of Web Applications

web-application-security

Not every web app has an appropriate and reliable access control system. In this project, we conducted research and experiments to infer/create access control models for the applications by detecting the sensitive resources and user data in the HTTP traces of opensource web applications (WordPress,Elgg, andFunkwhale).




Image source