» tagged pages
» logout

sorted by: recent | see : popular
Content Tagged with infosec + JavaScript

Tools - Research - SecureWorks

SecureWorks' Security Research Group has developed several security tools that are publicly available. All tools are released under the GNU General Public License (GPL) and are provided "as-is", with no warranty and no support.

snort: del.icio.us/tag/snort

Security for GWT Applications - Google Web Toolkit | Google Groups

Before going into the GWT specifics, the article gives some useful background on AJAX security issues including Same-Origin Policy, Cross-Site Scripting, Cross-Site Request Forging, and JSON.

json: del.icio.us/tag/json

Schneier on Security: JavaScript Hijacking

Bruce Schneier links to a paper on a JavaScript vulnerability that affects multiple browsers. It is easiest to exploit when JSON is used, but commentors maintain other attack vectors can also be used.

json: del.icio.us/tag/json