|国家预印本平台
首页|浏览器安全隔离技术的研究与实现

浏览器安全隔离技术的研究与实现

he Research and Implementation of Technologies for Broswer Security Isolation

中文摘要英文摘要

浏览器隔离机制对保护用户在网络上的安全和隐私至关重要。然而,实现适当的安全隔离非常困难。历史数据显示,即使看起来很简单的隔离策略,应用在当前浏览器后出奇地容易出错。本文主要研究远程浏览器的体系结构和实现,该体系结构是Web浏览器执行的新的可信软件层。远程浏览器在其自己的远端服务器中运行每个Web应用程序,这提供了Web应用程序和用户本地资源之间的强大隔离。安全评估表明,远程浏览器可以防止勒索软件的攻击。此外,对延迟的测量表明,用户不需要牺牲性能来增强浏览器安全性。

Browser\'s isolation mechanisms are critical to users\' safety and privacy on the web, however, achieving proper security isolation is very difficult. Historical data show that even for seemingly simple isolation policies, the current browser implementations are surprisingly error-prone. This paper describes the architecture and implementation of the Remote Browser, it is a new trusted software layer on which Web browsers execute. Remote Browser runs each Web application in its own remote server. This provides strong isolation between Web application and the user\'s local resources. The security evaluation shows that Remote Browser can prevent ransomware attacks. In addition, the measurements of latency indicate that users do not need to sacrifice performance to enhance browser security.

邝坚、田青青

计算技术、计算机技术

远程浏览器隔离WebSocket

Remote BrowserisolationWebSocket

邝坚,田青青.浏览器安全隔离技术的研究与实现[EB/OL].(2018-12-19)[2025-08-16].http://www.paper.edu.cn/releasepaper/content/201812-68.点此复制

评论