Article on AJAX security and Pen Testing

| No Comments

Ajax security basics

Interesting article on Security Focus looking at the security implications of AJAX technologies and also the implications for Penetration testing AJAX enabled applications.

In terms of the security risks of AJAX it will be interesting to see how well frameworks like Atlas and RoR take care of this for the developer. One thing I noticed in testing .NET v2 applications was the in-built input validation really cuts down on XSS and SQL Injection vulnerabilities, instead of the "old days" with classic ASP where I could virtually guarantee some kind of input validation problem somewhere...

Leave a comment

Pages

Powered by Movable Type 4.32-en

About this Entry

This page contains a single entry by Rory2 published on June 19, 2006 9:00 PM.

and yet more tool updates... was the previous entry in this blog.

Sometimes doing the right thing is wrong is the next entry in this blog.

Find recent content on the main index or look in the archives to find all content.