Welcome to Final Year Projects!!
  • Newsletter
  • +91 90254 34960
  • Contact Us
  • FAQs
Select category
  • Select category
  • Artificial Intelligence
  • Biomedical
  • Block Chain
  • Cloud Computing
  • Cyber Security
  • Data mining
  • Deep Learning
  • Embedded Components
  • Generative AI
  • IoT
  • LORA
  • Machine Learning
  • Mini Projects
    • Embedded
    • Java
    • Matlab
    • Python
    • VLSI
      • pipeline
  • Natural Language Processing
  • Projects
    • Embedded
      • Agriculture
      • Artificial Intelligence(AI)
      • Biomedical
      • Digital Twin
      • Federated Learning
      • Image Processing
      • Internet of Things(IoT)
      • LoRaWAN
      • Python Interface
      • Raspberry PI
      • Robotics
      • Social Cause
      • Wireless Sensor Network
    • Java
      • Android
      • Artificial Intelligence
      • Augmented Reality
      • Blockchain
      • Cloud Computing
      • Cybersecurity
      • Data Mining
      • Internet of Things (IoT)
      • Machine Learning
      • Secure Computing
      • Social Cause
    • Matlab
      • Cryptography- Authentication
      • Cyber Security
      • Deep Learning
      • Digital Image Processing
      • Machine Learning
      • Natural Language Processing
    • Python
      • Agent AI
      • Blockchain
      • Cybersecurity
      • Deep Learning
      • Explainable AI
      • Federated Learning
      • Generative AI
      • GPT
      • Graph Neural Network
      • Machine Learning
      • OpenCV
      • Quantum Encryption
      • Reinforcement Learning
    • VLSI
      • Low Power VLSI Design
      • On-Chip Cryptography
      • Self Repairing Technology
  • Robotics
  • Secure Computing
Login / Register
0 Wishlist
0 Compare
0 items ₹0.00
Menu
0 items ₹0.00
Browse Categories
  • Java
  • Python
  • Embedded
  • Machine Learning
  • Mechanical
  • Matlab
  • VLSI
  • Raspberry PI
  • Artificial Intelligence
  • Home
  • Shop
    • PROJECTS
      • PROJECTS
        • Java
        • Python
        • Embedded
        • Matlab
        • VLSI
        • Mechanical
    • MINI PROJECTS
      • PROJECTS
        • Java
        • Python
        • Matlab
        • VLSI
        • Embedded
    • WORKSHOPS
      • Workshops
        • Python
        • Robotics
        • Industry Visit
        • Raspberry Pi
        • Image Processing
        • Mechanical Engineering
        • VLSI
        • Arduino
        • Matlab
        • Machine Learning
        • Embedded
        • Android
        • IoT
    • INTERNSHIPS
      • Internships
        • Python
        • Machine learning
        • Artificial intelligence
        • Web development
        • Android
        • IoT / internet of things
        • Cloud Computing
        • Digital Marketing
        • Big Data
  • Journal paper
  • Blog
  • About us
  • Contact us
Click to enlarge
Home Projects Java Understanding the Security Risks of Websites Using Cloud Storage for Direct User File Uploads
ReACT_OCRS: An AI-Driven Anonymous Online Reporting System Using Synergized Reasoning and Acting in Language Models
ReACT_OCRS: An AI-Driven Anonymous Online Reporting System Using Synergized Reasoning and Acting in Language Models ₹5,500.00
Back to products
Credit Scoring Prediction Using Deep Learning Models in the Financial Sector
Credit Scoring Prediction Using Deep Learning Models in the Financial Sector ₹5,500.00

Understanding the Security Risks of Websites Using Cloud Storage for Direct User File Uploads

₹5,500.00

Aim:

                 To systematically analyze and identify security vulnerabilities in websites that allow users to upload files directly to cloud storage services, assess their real-world prevalence, and propose effective mitigation strategies to protect users, websites, and cloud infrastructure from potential abuse, data breaches, and operational disruptions.

Watch Product Video
Compare
Add to wishlist
Categories: Cloud Computing, Java Tags: Cloud Computing, CloudVault, Java Projects, ReactJS, Spring Tool Suite
Share:
  • Description
  • Reviews (0)
  • Software Download
  • Download Abstract
  • Shipping & Delivery
Description

Aim:

          To systematically analyze and identify security vulnerabilities in websites that allow users to upload files directly to cloud storage services, assess their real-world prevalence, and propose effective mitigation strategies to protect users, websites, and cloud infrastructure from potential abuse, data breaches, and operational disruptions.

Abstract:

          With the growing reliance on cloud storage services for handling large volumes of user-generated data, a new paradigm has emerged where users directly upload files from their browsers to cloud platforms. While this approach improves efficiency and reduces server load, it introduces significant security challenges due to the complex interactions among web users, web servers, and cloud storage providers. This study presents the first systematic investigation into this scenario, uncovering six novel types of vulnerabilities, including issues related to upload credential misuse, file type/size restrictions, and callback spoofing. Analyzing 28 popular websites out of 182 that use cloud storage (among the top 500 Alexa-ranked sites), the study found that every one of them had at least one of the identified vulnerabilities, totaling 79 new issues. The findings highlight the critical need for better access control, credential management, and notification integrity. The paper concludes with practical mitigation techniques and responsible disclosures to affected websites, contributing valuable insights to future web security research and practices.

Proposed System:

            In the proposed system, an enhancement is introduced to improve the security of direct user file uploads to cloud storage by integrating the VirusTotal API at the cloud server level. Unlike the existing system, where uploaded files are stored immediately after passing basic credential checks, the proposed approach adds an additional malware scanning step before finalizing the upload. When a user uploads a file using a temporary credential, the cloud server intercepts the file and sends it to VirusTotal for analysis. VirusTotal scans the file using multiple antivirus engines to detect potential threats such as malware, trojans, or viruses. Only if the file is verified as safe does the cloud server allow it to be stored or notify the web server of a successful upload. If the file is flagged as malicious, the upload is aborted, and the server is alerted. To improve performance and scalability, Spring Reactive WebFlux is used instead of the traditional MVC model, enabling non-blocking, asynchronous request handling and better real-time throughput under high-load conditions. This integration significantly enhances the security of cloud storage systems by preventing the storage and distribution of harmful content, while also improving responsiveness.

Advantages:

          The proposed CloudVault system significantly improves security by introducing multiple layers of protection during direct file uploads to cloud storage. It incorporates VirusTotal API integration to scan files with multiple antivirus engines before allowing them to be stored, ensuring that only safe content is accepted. The use of OAuth 2.0 and JWT-based authentication enables secure, stateless user sessions, while scoped and time-limited credentials reduce the risk of misuse. The server performs strict validation of file types, sizes, and formats, preventing uploads that could exploit the system. Unlike the existing model, the server actively participates in the upload flow by intercepting files, enabling greater control, monitoring, and auditing. . By leveraging Spring WebFlux instead of MVC, the system handles concurrent users and file scans efficiently with non-blocking I/O, making it scalable and reactive.  Additionally, users receive clear feedback on upload outcomes, enhancing transparency and trust.

Reviews (0)

Reviews

There are no reviews yet.

Be the first to review “Understanding the Security Risks of Websites Using Cloud Storage for Direct User File Uploads” Cancel reply

Your email address will not be published. Required fields are marked *


The reCAPTCHA verification period has expired. Please reload the page.

Software Download

You must be logged in to download the software.

Download Abstract

You must be logged in to download the abstract.

Shipping & Delivery
wd-ship-1
wd-ship-2

MAECENAS IACULIS

Vestibulum curae torquent diam diam commodo parturient penatibus nunc dui adipiscing convallis bulum parturient suspendisse parturient a.Parturient in parturient scelerisque nibh lectus quam a natoque adipiscing a vestibulum hendrerit et pharetra fames nunc natoque dui.

ADIPISCING CONVALLIS BULUM

  • Vestibulum penatibus nunc dui adipiscing convallis bulum parturient suspendisse.
  • Abitur parturient praesent lectus quam a natoque adipiscing a vestibulum hendre.
  • Diam parturient dictumst parturient scelerisque nibh lectus.

Scelerisque adipiscing bibendum sem vestibulum et in a a a purus lectus faucibus lobortis tincidunt purus lectus nisl class eros.Condimentum a et ullamcorper dictumst mus et tristique elementum nam inceptos hac parturient scelerisque vestibulum amet elit ut volutpat.

Related products

Compare

Agri-4-All: A Framework for Blockchain Based Agricultural Food Supply Chains in the Era of Fourth Industrial Revolution

Projects, Java, Blockchain, Block Chain
₹5,500.00
Aim:           Our study aims to develop a blockchain-based web application that enhances transparency and traceability in the agricultural food
Add to wishlist
Add to cart
Quick view
Compare

Blockchain-based Anti-Counterfeit Product Identification System

Projects, Java, Blockchain, Block Chain
₹5,500.00
Aim:        Our study aims at Blockchain-based Anti-Counterfeit Product Identification System using QR Code for tracking and verifying authenticity of
Add to wishlist
Add to cart
Quick view
Compare

DEDUCT: A Secure Deduplication of Textual Data in Cloud Environments

Projects, Java, Cloud Computing, Cloud Computing
₹5,500.00
Aim:  To design and implement DEDUCT, a secure and efficient data deduplication method for textual data. The goal is to reduce storage demands while ensuring data confidentiality and supporting resource-constrained devices.
Add to wishlist
Add to cart
Quick view
Heterogeneous Data Storage Management with Deduplication in Cloud Computing
Compare

Heterogeneous Data Storage Management with Deduplication in Cloud Computing

Projects, Java, Cloud Computing, Cloud Computing
₹5,000.00
Aim:        The main aim of this project is to control file duplication in cloud computing. Synopsis:        Cloud storage
Add to wishlist
Add to cart
Quick view
Compare

Mulberry Leaf Disease Detection Using CNN-Based Smart Android Application

Projects, Java, Android, Machine Learning, Machine Learning
₹5,500.00
Aim:  To develop an Android application for detecting diseases in mulberry leaves using deep learning and provide actionable insights like weather data analysis and fertilization recommendations.
Add to wishlist
Add to cart
Quick view
Compare

ReACT_OCRS: An AI-Driven Anonymous Online Reporting System Using Synergized Reasoning and Acting in Language Models

Java
₹5,500.00
Aim:                   The aim of this research is to develop ReACT_OCRS, an AI-powered voice-based cybercrime reporting system that enables anonymous and multilingual audio complaint submissions. It seeks to enhance accessibility, accuracy, and security in cybercrime reporting through speech recognition.
Add to wishlist
Add to cart
Quick view
Representing Fine-Grained Co-Occurrences for Behavior-Based Fraud Detection in Online Payment Services
Compare

Representing Fine-Grained Co-Occurrences for Behavior-Based Fraud Detection in Online Payment Services

Projects, Java, Secure Computing, Secure Computing
₹5,000.00
Aim:         The main aim of the project is to identify the Credit card Fraud transaction that has been initiated
Add to wishlist
Add to cart
Quick view
Compare

Smart E-Commmerce App using AR to Visualize Products in Realtime on Android

Java, Augmented Reality, Android
₹5,500.00
The goal of this project is to develop an Augmented Reality (AR) and 3D modeling system for online furniture shopping. The primary aim is to enhance the shopping experience by allowing customers to visualize furniture in their actual living spaces before making a purchase. This system will reduce uncertainty, improve engagement, and provide a more interactive and personalized shopping experience.
Add to wishlist
Add to cart
Quick view

    Global Techno Solutions - GTS, started by young engineering graduates to overcome a problem they faced during their academic years. That is "Providing Solutions". They kept it as the motto for their company.

    • Phone: (+91) 90254 34960
    • Mail: sales@finalyearprojects.in
    Our Category
    • Java
    • Python
    • Embedded
    • Matlab
    • VLSI
    • Mechanical
    USEFUL LINKS
    • Privacy Policy
    • Returns
    • Terms & Conditions
    • Contact Us
    • Latest News
    • FAQ
    Mini Projects
    • Java
    • Python
    • Embedded
    • Matlab
    • VLSI
    Copyright Finalyearprojects.In 2024
    payments
    • Menu
    • Categories
    • Java
    • Python
    • Embedded
    • Machine Learning
    • Mechanical
    • Matlab
    • VLSI
    • Raspberry PI
    • Artificial Intelligence
    • Home
    • Shop
    • Blog
    • About us
    • Contact us
    • Wishlist
    • Compare
    • Login / Register
    Shopping cart
    Close
    Sign in
    Close

    Lost your password?

    OR
    Don't have an account? Signup

    No account yet?

    Create an Account

    HEY YOU, SIGN UP AND CONNECT TO GLOBAL TECHNO SOLUTIONS

    Be the first to learn about our latest trends and get exclusive offers

    Will be used in accordance with our Privacy Policy

    Shop
    0 Wishlist
    0 items Cart
    My account

    Back