61,071 News Articles

AJAX poses Web 2.0 security threat

Web apps can by hijacked, says Fortify

Many web applications written using the popular AJAX programming technique are vulnerable to a JavaScript hijacking attack, security company Fortify Software has claimed.

Fortify said that the "pervasive and critical vulnerability" is present in 11 of the 12 most popular AJAX frameworks, and therefore in many Web 2.0 applications. It allows an attacker to pose as the application's user and intercept data sent via JavaScript commands, by using the


Comments

Send to a friend

Email this article to a friend or colleague:


PLEASE NOTE: Your name is used only to let the recipient know who sent the story. Both your name and the recipient's name and address will not be used for any other purpose.