FIELD: information technology.
SUBSTANCE: first method uses cluster statistical models of malicious elements of web pages to detect malicious elements of a web page. The second method compares the hash computed according to the information about the content of element, received from the computing device of the user, with hash computed according to the information about the contents of a deliberately malicious element in a web page. Both the first and the second method, information about the contents of the elements that are used to detect malicious elements is collected by the script on the web client side, contained directly in the web page, whose information about the contents of the elements is collected.
EFFECT: ensuring the detection of malicious elements of the web page that occurred on the user side, without installing additional software, reducing the number of errors of the first kind when malicious elements of web pages are detected.
22 cl, 7 dwg
Authors
Dates
2017-12-15—Published
2016-10-10—Filed