Use https to encrypt everything on wire. Its simple and proven ...
Sent from my iPhone On 8 Jul 2014, at 09:47, Jayanta Pramanik <jayanta.prama...@gmail.com> wrote: > Hi All, > > Please let me clear more about security issues that may arise from Javascripts > OWASP recommended top 10 security measures. Javascript itself is very much > vulnerable and prone to get XSS , CSRF attack ! Then Angular JS being > javascript in origin how can we protect data and implement OWASP guideline > for our financial application. How can we encrypt param values if we want to > do that while calling RESTservice from web portal to middleware backend. > > Regards, > > Jayanta P. > > > > > > On Monday, July 7, 2014 4:15:01 PM UTC+5:30, Jayanta Pramanik wrote: >> >> Hi All, >> >> Hi All, >> >> AngularJS is new web UI that may replace JSP. But before that few questions >> how it can be used in secured web application. For example if any >> banking/financial application is built with AngularJS isn't there >> vulnerability exists which may cause future complexities. >> >> How different secured REST call can be done or what are different security >> can be taken for web portal ? >> >> Regards, >> >> Jayanta P. >> >> >> On Saturday, February 23, 2013 1:31:25 AM UTC+5:30, Marco Rinck wrote: >>> >>> You don't find any examples as the best usecase for angularJS and JEE is >>> using a JaxRS backend (in JEE container) and static html files without any >>> Java Frontend technology like JSP, JSF whatsoever. >>> >>> Really, what do you need JSP for when you have a first class web app >>> powered by angularJS? >>> >>> Marco > > -- > You received this message because you are subscribed to the Google Groups > "AngularJS" group. > To unsubscribe from this group and stop receiving emails from it, send an > email to angular+unsubscr...@googlegroups.com. > To post to this group, send email to angular@googlegroups.com. > Visit this group at http://groups.google.com/group/angular. > For more options, visit https://groups.google.com/d/optout. -- You received this message because you are subscribed to the Google Groups "AngularJS" group. To unsubscribe from this group and stop receiving emails from it, send an email to angular+unsubscr...@googlegroups.com. To post to this group, send email to angular@googlegroups.com. Visit this group at http://groups.google.com/group/angular. For more options, visit https://groups.google.com/d/optout.