文章基于开源的Firefox浏览器,对运行于Firefox内部的浏览器扩展的行为进行分析、总结,对恶意浏览器扩展的行为进行分类,并建立恶意浏览器扩展的状态转移行为模型,以对恶意浏览器扩展的恶意行为进行较为全面的描述,为后续针对恶意浏览器扩展的检测工作奠定基础,以期建立和完善安全浏览器。
Based on the open-source browser, Firefox, we investigate into the behavior of the browser extensions which are executing within Firefox, and classify the malicious browser extensions into four categories and propose the state-transition-based behavior model of the malicious ones to depict their behavior more concretely. It is the foundation of our future work on detecting the malicious browser extensions and realizing the secure browser tool.