[Phpwm] ajax security issue(s)

David Goodwin david at codepoets.co.uk
Wed Apr 4 16:39:30 BST 2007


Hi,

I came across the following the other day. I don't quite know much about 
JSON/AJAX and couldn't follow how the attack could take place..... 
however perhaps this may be of use to others here ?


http://www.eweek.com/article2/0,1895,2110554,00.asp

http://getahead.org/blog/joe/2007/03/05/json_is_not_as_safe_as_people_think_it_is.html

and

http://googlewebtoolkit.blogspot.com/2007/04/security-for-gwt-applications.html 


(The first article seems to be a bit of a selling pitch for a product, 
so I'm not sure how real the problem is)


David.
-- 
David Goodwin

[ david at codepoets dot co dot uk ]
[ http://www.codepoets.co.uk       ]



More information about the Phpwm mailing list