{"id":"https://openalex.org/W3131584678","doi":"https://doi.org/10.1007/s10207-020-00537-0","title":"DAPP: automatic detection and analysis of prototype pollution vulnerability in Node.js modules","display_name":"DAPP: automatic detection and analysis of prototype pollution vulnerability in Node.js modules","publication_year":2021,"publication_date":"2021-02-13","ids":{"openalex":"https://openalex.org/W3131584678","doi":"https://doi.org/10.1007/s10207-020-00537-0","mag":"3131584678"},"language":"en","primary_location":{"id":"doi:10.1007/s10207-020-00537-0","is_oa":false,"landing_page_url":"https://doi.org/10.1007/s10207-020-00537-0","pdf_url":null,"source":{"id":"https://openalex.org/S164062316","display_name":"International Journal of Information Security","issn_l":"1615-5262","issn":["1615-5262","1615-5270"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319900","host_organization_name":"Springer Science+Business Media","host_organization_lineage":["https://openalex.org/P4310319900","https://openalex.org/P4310319965"],"host_organization_lineage_names":["Springer Science+Business Media","Springer Nature"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"International Journal of Information Security","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5100720433","display_name":"Hee Yeon Kim","orcid":"https://orcid.org/0000-0001-9669-5705"},"institutions":[{"id":"https://openalex.org/I197347611","display_name":"Korea University","ror":"https://ror.org/047dqcg40","country_code":"KR","type":"education","lineage":["https://openalex.org/I197347611"]}],"countries":["KR"],"is_corresponding":false,"raw_author_name":"Hee Yeon Kim","raw_affiliation_strings":["Department of Cyber Defense, Korea University, Seoul, Republic of Korea"],"affiliations":[{"raw_affiliation_string":"Department of Cyber Defense, Korea University, Seoul, Republic of Korea","institution_ids":["https://openalex.org/I197347611"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100410801","display_name":"Ji Hoon Kim","orcid":"https://orcid.org/0000-0002-4427-3997"},"institutions":[{"id":"https://openalex.org/I197347611","display_name":"Korea University","ror":"https://ror.org/047dqcg40","country_code":"KR","type":"education","lineage":["https://openalex.org/I197347611"]}],"countries":["KR"],"is_corresponding":false,"raw_author_name":"Ji Hoon Kim","raw_affiliation_strings":["Department of Cyber Defense, Korea University, Seoul, Republic of Korea"],"affiliations":[{"raw_affiliation_string":"Department of Cyber Defense, Korea University, Seoul, Republic of Korea","institution_ids":["https://openalex.org/I197347611"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5028441980","display_name":"Ho Kyun Oh","orcid":"https://orcid.org/0000-0002-3083-057X"},"institutions":[{"id":"https://openalex.org/I197347611","display_name":"Korea University","ror":"https://ror.org/047dqcg40","country_code":"KR","type":"education","lineage":["https://openalex.org/I197347611"]}],"countries":["KR"],"is_corresponding":false,"raw_author_name":"Ho Kyun Oh","raw_affiliation_strings":["Department of Cyber Defense, Korea University, Seoul, Republic of Korea"],"affiliations":[{"raw_affiliation_string":"Department of Cyber Defense, Korea University, Seoul, Republic of Korea","institution_ids":["https://openalex.org/I197347611"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5112611883","display_name":"Beom Jin Lee","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Beom Jin Lee","raw_affiliation_strings":["Hayyim Security, Seoul, Republic of Korea"],"affiliations":[{"raw_affiliation_string":"Hayyim Security, Seoul, Republic of Korea","institution_ids":[]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5035159200","display_name":"Si Woo Mun","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Si Woo Mun","raw_affiliation_strings":["Alice&Mallory, Seoul, Republic of Korea"],"affiliations":[{"raw_affiliation_string":"Alice&Mallory, Seoul, Republic of Korea","institution_ids":[]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5113934251","display_name":"Jeong Hoon Shin","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Jeong Hoon Shin","raw_affiliation_strings":["THEORI, Seoul, Republic of Korea"],"affiliations":[{"raw_affiliation_string":"THEORI, Seoul, Republic of Korea","institution_ids":[]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5074787000","display_name":"Kyounggon Kim","orcid":"https://orcid.org/0000-0002-5675-4253"},"institutions":[{"id":"https://openalex.org/I4210142658","display_name":"Naif Arab University for Security Sciences","ror":"https://ror.org/049c46160","country_code":"SA","type":"education","lineage":["https://openalex.org/I4210142658"]}],"countries":["SA"],"is_corresponding":true,"raw_author_name":"Kyounggon Kim","raw_affiliation_strings":["Department of Forensic Sciences, Naif Arab University for Security Sciences, Riyadh, Kingdom of Saudi Arabia"],"affiliations":[{"raw_affiliation_string":"Department of Forensic Sciences, Naif Arab University for Security Sciences, Riyadh, Kingdom of Saudi Arabia","institution_ids":["https://openalex.org/I4210142658"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":7,"corresponding_author_ids":["https://openalex.org/A5074787000"],"corresponding_institution_ids":["https://openalex.org/I4210142658"],"apc_list":{"value":2590,"currency":"EUR","value_usd":3190},"apc_paid":null,"fwci":8.2254,"has_fulltext":false,"cited_by_count":31,"citation_normalized_percentile":{"value":0.97484861,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":95,"max":100},"biblio":{"volume":"21","issue":"1","first_page":"1","last_page":"23"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T12479","display_name":"Web Application Security Vulnerabilities","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T12479","display_name":"Web Application Security Vulnerabilities","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9986000061035156,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9966999888420105,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8408660888671875},{"id":"https://openalex.org/keywords/abstract-syntax-tree","display_name":"Abstract syntax tree","score":0.598691463470459},{"id":"https://openalex.org/keywords/node","display_name":"Node (physics)","score":0.5880576968193054},{"id":"https://openalex.org/keywords/javascript","display_name":"JavaScript","score":0.5857635736465454},{"id":"https://openalex.org/keywords/vulnerability","display_name":"Vulnerability (computing)","score":0.45357760787010193},{"id":"https://openalex.org/keywords/software","display_name":"Software","score":0.43665701150894165},{"id":"https://openalex.org/keywords/abstract-syntax","display_name":"Abstract syntax","score":0.41402214765548706},{"id":"https://openalex.org/keywords/syntax","display_name":"Syntax","score":0.3916233777999878},{"id":"https://openalex.org/keywords/data-mining","display_name":"Data mining","score":0.3256256580352783},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.26571688055992126},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.2049904763698578},{"id":"https://openalex.org/keywords/world-wide-web","display_name":"World Wide Web","score":0.13479048013687134},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.10230356454849243}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8408660888671875},{"id":"https://openalex.org/C58646249","wikidata":"https://www.wikidata.org/wiki/Q127380","display_name":"Abstract syntax tree","level":3,"score":0.598691463470459},{"id":"https://openalex.org/C62611344","wikidata":"https://www.wikidata.org/wiki/Q1062658","display_name":"Node (physics)","level":2,"score":0.5880576968193054},{"id":"https://openalex.org/C544833334","wikidata":"https://www.wikidata.org/wiki/Q2005","display_name":"JavaScript","level":2,"score":0.5857635736465454},{"id":"https://openalex.org/C95713431","wikidata":"https://www.wikidata.org/wiki/Q631425","display_name":"Vulnerability (computing)","level":2,"score":0.45357760787010193},{"id":"https://openalex.org/C2777904410","wikidata":"https://www.wikidata.org/wiki/Q7397","display_name":"Software","level":2,"score":0.43665701150894165},{"id":"https://openalex.org/C114408938","wikidata":"https://www.wikidata.org/wiki/Q333373","display_name":"Abstract syntax","level":3,"score":0.41402214765548706},{"id":"https://openalex.org/C60048249","wikidata":"https://www.wikidata.org/wiki/Q37437","display_name":"Syntax","level":2,"score":0.3916233777999878},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.3256256580352783},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.26571688055992126},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.2049904763698578},{"id":"https://openalex.org/C136764020","wikidata":"https://www.wikidata.org/wiki/Q466","display_name":"World Wide Web","level":1,"score":0.13479048013687134},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.10230356454849243},{"id":"https://openalex.org/C127413603","wikidata":"https://www.wikidata.org/wiki/Q11023","display_name":"Engineering","level":0,"score":0.0},{"id":"https://openalex.org/C66938386","wikidata":"https://www.wikidata.org/wiki/Q633538","display_name":"Structural engineering","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1007/s10207-020-00537-0","is_oa":false,"landing_page_url":"https://doi.org/10.1007/s10207-020-00537-0","pdf_url":null,"source":{"id":"https://openalex.org/S164062316","display_name":"International Journal of Information Security","issn_l":"1615-5262","issn":["1615-5262","1615-5270"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319900","host_organization_name":"Springer Science+Business Media","host_organization_lineage":["https://openalex.org/P4310319900","https://openalex.org/P4310319965"],"host_organization_lineage_names":["Springer Science+Business Media","Springer Nature"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"International Journal of Information Security","raw_type":"journal-article"}],"best_oa_location":null,"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/9","score":0.5899999737739563,"display_name":"Industry, innovation and infrastructure"}],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":30,"referenced_works":["https://openalex.org/W109951691","https://openalex.org/W133470593","https://openalex.org/W1976357819","https://openalex.org/W1987647365","https://openalex.org/W1989147905","https://openalex.org/W1992114977","https://openalex.org/W1999579337","https://openalex.org/W2006485996","https://openalex.org/W2022187073","https://openalex.org/W2036639103","https://openalex.org/W2075410688","https://openalex.org/W2079753286","https://openalex.org/W2085925880","https://openalex.org/W2111117034","https://openalex.org/W2111379929","https://openalex.org/W2165004968","https://openalex.org/W2293891280","https://openalex.org/W2297419069","https://openalex.org/W2415261253","https://openalex.org/W2542877701","https://openalex.org/W2566281548","https://openalex.org/W2591793539","https://openalex.org/W2606589758","https://openalex.org/W2715640203","https://openalex.org/W2742244373","https://openalex.org/W2748690817","https://openalex.org/W2788565238","https://openalex.org/W2910728092","https://openalex.org/W2913995833","https://openalex.org/W3003638206"],"related_works":["https://openalex.org/W2077104824","https://openalex.org/W2536864162","https://openalex.org/W2613250302","https://openalex.org/W2095633838","https://openalex.org/W2390421503","https://openalex.org/W1988370859","https://openalex.org/W2387926336","https://openalex.org/W319507398","https://openalex.org/W2364428493","https://openalex.org/W2773378563"],"abstract_inverted_index":null,"counts_by_year":[{"year":2025,"cited_by_count":2},{"year":2024,"cited_by_count":5},{"year":2023,"cited_by_count":17},{"year":2022,"cited_by_count":7}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
