| By RIA News Desk | Article Rating: |
|
| August 30, 2007 07:45 AM EDT | Reads: |
8,090 |
With so many Web 2.0 applications being written in AJAX, it was only a matter of time before the vulnerabilities began to crop up, but no one expected the unusual form they would take. This session by the man who discovered the first cross-vendor AJAX vulnerability – JavaScript Hijacking - will detail it and other security concerns while also discussing ways that AJAX could be implemented to make it less risky. Finally, we will take a look at AJAX security incidents to-date, and identify the ways that increased adoption of AJAX is likely to change the way hackers behave.AJAXWorld 2007 East Conference & Expo Sponsored by the World's Top Web 2.0 and RIA Technology Leaders!
AJAXWorld Conference & Expo 2007 East sponsors and exhibitors included: Laszlo Systems (Diamond Sponsor), JackBe (Platinum Sponsor), Adobe (Platinum Sponsor), Cynergy (Platinum Sponsor), Backbase (Gold Sponsor) Google (Gold Sponsor), Nexaweb (Gold Sponsor), ICEsoft (Gold Sponsor), Oracle (Gold Sponsor), Helmi Technologies (Gold Sponsor), JetBrains (Gold Sponsor), TIBCO (Gold Sponsor), Kapow Technologies (Gold Sponsor), Sun Microsystems (Silver Sponsor), Parasoft (Silver Sponsor), Servoy (Silver Sponsor), Etelos (Silver Sponsor), Microsoft (Expo Plus Sponsor), Lightstreamer (Exhibitor Plus Sponsor), IT Mill (Exhibitor Plus Sponsor), FrogLogic (Exhibitor Plus Sponsor), ThinWire (Expo Sponsor), Quasar Tecnologies (Expo Sponsor), Zapatec (Exhibitor Plus Sponsor), MB Technologies Bindows (Exhibitor), OpenSpot (Exhibitor), ILOG (Exhibitor), Passport Corporation (Exhibitor), Addison-Wesley (Exhibitor), The Thomson Corporation (Exhibitor), Isomorphic Software-SmartClient (Exhibitor), Universal Mind (Exhibitor), Farata Systems (Exhibitor Plus), Manning Publications (AJAX Book Sponsor), Apress (AJAX Book Sponsor), Conference Guru (Media Sponsor), Flash Goddess (Media Sponsor), AJAXWorld Magazine (Media Sponsor), Web 2.0 Journal (Media Sponsor), SYS-CON.TV (Media Sponsor), IT Mill (Media Sponsor), Methods & Tools (Media Sponsor), Web 2.0 Journal (Media Sponsor), and OASIS.
As of today OpenAjax Alliance members include: 24SevenOffice, abiss.gr, ActiveGrid, ActiveState, Adobe, American Greetings, Aplix Corporation, Appeon, Aptana, Arimaan Global Consulting, BEA Systems, Cisco Systems, Coradiant, Curl, Custom Credit Systems (Thinwire), Document Advantage, Dojo Foundation DreamFace Interactive, Eclipse Foundation, edge IPK, eLink Business Innovations, ESRI, F5, Fidelity Investments, Finetooth, Getahead (DWR), Global Computer Enterprises, GoETC, Google, Helmi Technologies, HR-XML, IBM, ICEsoft, Ikivo, ILOG, Innoopract, iPolipo, Isomorphic Software, IT MILL, JackBe, Javeline, JSSL, JWAX, Laszlo Systems, Lightstreamer, Microsoft, MobileAware, Mozilla Corporation, NetScript Technologies, Nexaweb, Nitobi, Novell, OpenLink Software, OpenSpot, OpenSymphony (OpenQA), Openwave Systems, Opera, OpSource, Oracle, OS3.IT, RadView, Redmonk, RIFT Technologies, SAP, Scalix, Seagull Software, Service-Now.com, Sitepen, Software AG, Sun Microsystems, Tealeaf Technology, Teleca Mobile, Telerik, The Frontside, Tibco, Transmend, Vertex Logic, Visible Measures, Visual WebGui, Volantis Systems, Webtide, XML11, Xucia, Zend, Zimbra, and Zoho.
Published August 30, 2007 Reads 8,090
Copyright © 2007 SYS-CON Media, Inc. — All Rights Reserved.
Syndicated stories and blog feeds, all rights reserved by the author.
More Stories By RIA News Desk
Ever since Google popularized a smarter, more responsive and interactive Web experience by using AJAX (Asynchronous JavaScript + XML) for its Google Maps & Gmail applications, SYS-CON's RIA News Desk has been covering every aspect of Rich Internet Applications and those creating and deploying them. If you have breaking RIA news, please send it to RIA@sys-con.com to share your product and company news coverage with AJAXWorld readers.
![]() |
radixweb 08/18/08 07:24:10 AM EDT | |||
Great Post... Java Programmer... |
||||
![]() |
radixweb 08/18/08 03:07:42 AM EDT | |||
Hey, Great Post..... |
||||
![]() |
AJAX Security News Desk 08/28/07 12:33:55 PM EDT | |||
With so many Web 2.0 applications being written in AJAX, it was only a matter of time before the vulnerabilities began to crop up, but no one expected the unusual form they would take. This session by the man who discovered the first cross-vendor AJAX vulnerability - JavaScript Hijacking - will detail it and other security concerns while also discussing ways that AJAX could be implemented to make it less risky. Finally, we will take a look at AJAX security incidents to-date, and identify the ways that increased adoption of AJAX is likely to change the way hackers behave. |
||||
- Kindle 2 vs Nook
- Cloud Computing on Gartner's Top 10 List and SYS-CON Events' 2010 Calendar
- Confessions of a Ulitzer Addict
- IBM Hardware Chief, Intel VC Exec Arrested in Insider Trading Scam
- Tactical Cloud Computing Panel at 1st Annual GovIT Expo
- Ulitzer.com Named Exclusive "New Media" Sponsor of Cloud Computing Conference & Expo
- Moving Your RIA Apps into the Cloud: Seven Challenges
- Adobe’s Aiming ColdFusion at Multiple Clouds
- Windows 7 – Microsoft’s First Step to the Cloud
- Ulitzer Provides a Powerful Social Journalism Platform
- Jill Tummler Singer, Deputy CIO of CIA, Keynotes at GovIT Expo
- Open Source Mobile Cloud Sync and Push Email
- Kindle 2 vs Nook
- The Difference Between Web Hosting and Cloud Computing
- Cloud Computing on Gartner's Top 10 List and SYS-CON Events' 2010 Calendar
- Ajax in RichFaces 3.3, JSF 2 and RichFaces 4
- Confessions of a Ulitzer Addict
- IBM Hardware Chief, Intel VC Exec Arrested in Insider Trading Scam
- My Thoughts on Ulitzer
- Tactical Cloud Computing Panel at 1st Annual GovIT Expo
- Ulitzer.com Named Exclusive "New Media" Sponsor of Cloud Computing Conference & Expo
- US Post Office Hops a Ride on NetSuite’s Cloud
- Moving Your RIA Apps into the Cloud: Seven Challenges
- Adobe’s Aiming ColdFusion at Multiple Clouds
- Building a Drag-and-Drop Shopping Cart with AJAX
- What Is AJAX?
- Google Maps! AJAX-Style Web Development Using ASP.NET
- Flashback to January 2006: Exclusive SYS-CON.TV Interviews on "OpenAjax Alliance" Announcement
- AJAXWorld Conference & Expo to Take Place October 2-4, 2006, at the Santa Clara Convention Center, California
- AJAX Sponsor Webcasts Are Now Available at AJAXWorld Website
- How and Why AJAX, Not Java, Became the Favored Technology for Rich Internet Applications
- "Real-World AJAX" One-Day Seminar Arrives in Silicon Valley
- AJAXWorld University Announces AJAX Developer Bootcamp
- AJAX Support In JadeLiquid WebRenderer v3.1
- Where Are RIA Technologies Headed in 2008?
- Struts Validations Framework Using AJAX







































