Researchers from University College London, Stanford Engineering, Google, Chalmers University of Technology and Mozilla Research have built the system called 'Confinement with Origin Web Labels,' or COWL.
It works with Mozilla's Firefox and the open-source version of Google's Chrome web browsers and prevents malicious code in a web site from leaking sensitive information to unauthorised parties, while allowing code in a web site to display content drawn from multiple web sites - an essential function for modern, feature-rich web applications.
Currently, web users' privacy can be compromised by malicious JavaScript code hidden in seemingly legitimate web sites.
The web site's operator may have incorporated code obtained elsewhere into his or her web site without realising that the code contains bugs or is malicious.
Such code can access sensitive data within the same or other browser tabs, allowing unauthorised parties to obtain or modify data without the user's knowledge.
"The new system provides a property known as 'confinement' which has been known since the 1970s, but proven difficult to achieve in practical systems like web browsers," co-author Professor Brad Karp from UCL said.
"If a JavaScript programme embedded within one web site reads information provided by another web site - legitimately or otherwise - COWL permits the data to be shared, but thereafter restricts the application receiving the information from communicating it to unauthorised parties.
"As a result, the site that shares data maintains control over it, even after sharing the information within the browser," Karp said.
You’ve reached your limit of {{free_limit}} free articles this month.
Subscribe now for unlimited access.
Already subscribed? Log in
Subscribe to read the full story →
Smart Quarterly
₹900
3 Months
₹300/Month
Smart Essential
₹2,700
1 Year
₹225/Month
Super Saver
₹3,900
2 Years
₹162/Month
Renews automatically, cancel anytime
Here’s what’s included in our digital subscription plans
Exclusive premium stories online
Over 30 premium stories daily, handpicked by our editors


Complimentary Access to The New York Times
News, Games, Cooking, Audio, Wirecutter & The Athletic
Business Standard Epaper
Digital replica of our daily newspaper — with options to read, save, and share


Curated Newsletters
Insights on markets, finance, politics, tech, and more delivered to your inbox
Market Analysis & Investment Insights
In-depth market analysis & insights with access to The Smart Investor


Archives
Repository of articles and publications dating back to 1997
Ad-free Reading
Uninterrupted reading experience with no advertisements


Seamless Access Across All Devices
Access Business Standard across devices — mobile, tablet, or PC, via web or app
