Embracing Ajax… well what about Security?
With the 1.0 version of Ajax behind us, my company is looking into aspects of integrating MS Ajax into our future applications.
One thing that we’ve asked ourselfves is, well this is all great…. but what about security? We do all these nice web service calls, out of band requests… how does that relate to security issues?
So, I’ve digged a little into the subject and found some articles that might be of interest to you as well:
Top 10 Web 2.0 Attack Vectors
http://www.net-security.org/article.php?id=949
AJAX Security Talks
http://blogs.msdn.com/brada/archive/2006/12/18/ajax-security-talks.aspx
App security tools target Ajax vulnerabilities
http://searchappsecurity.techtarget.com/originalContent/0,289142,sid92_gci1189575,00.html
[UPDATE 26.01.2007]
Upcoming AJAX Security Webcasts
http://www.joeon.net/archive/2007/01/12/Upcoming-AJAX-Security-Webcasts.aspx
[/UPDATE]
These are by far only the starting point resources… when I found some others I will point them to you as well.
Cheers!

Leave a Reply