November 28, 2007
The Broken Web
The web is broken. Oh well, time to change what I do for a living...
Seriously though, I'm in Brisbane at OSDC and have just had the privilege of listening to Rasmus Lerdorf, creator of PHP, give his keynote address about Exploring the Broken Web. In an entertaining style he showed how easy it is for hackers to use Javascript to exploit XSS and XSRF holes. As he said, all we have to do to use the web in a secure way is to take care in the way we use it. For example, never click on a link. Never use the same computer to use the web externally and internally.
So the web is broken and will not be fixed any time soon. I guess it's not a perfect world.
Posted to Internet, Security, Software Development by Keith PittyComments
Post a comment
