TulipTools Internet Business Owners and Online Sellers Community

Full Version: Web 2.0: almost all AJAX toolkits found ti be vulnerable to JavaScript Hijacking
You're currently viewing a stripped down version of our content. View the full version with proper formatting.
Quote:Security researchers have found what they say is an entirely new kind of web-based attack, and it only targets the Ajax applications so beloved of the 'Web 2.0' movement.

Fortify Software, which said it discovered the new class of vulnerability and has named it "JavaScript hijacking", said that almost all the major Ajax toolkits have been found vulnerable.

"JavaScript Hijacking allows an unauthorized attacker to read sensitive data from a vulnerable application...

full article: http://www.cbronline.com/article_news.as...89DD0E6606