On 6/27/06, Christof Wollenhaupt <[EMAIL PROTECTED]> wrote:
Hi Ted,

> Similarly, implementations of Javascript and AJAX have leaked files to the
OS, allowed some nasty cross-site scripting issues

I can't let that go by uncommented... <s>


Thanks for the knowledgeable reply. I've never had a complete grasp on
XSS vs. exploits between security zones (IE) and other similar classes
of exploits.

I just know that rolling out Javascript features in some of our apps
resulted in a lot of pushback from customers who "knew" js was
insecure. Would you say that is no longer true?

How have you found acceptance of js-based apps?

--
Ted Roche
Ted Roche & Associates, LLC
http://www.tedroche.com


_______________________________________________
Post Messages to: [email protected]
Subscription Maintenance: http://leafe.com/mailman/listinfo/profox
OT-free version of this list: http://leafe.com/mailman/listinfo/profoxtech
** All postings, unless explicitly stated otherwise, are the opinions of the 
author, and do not constitute legal or medical advice. This statement is added 
to the messages for those lawyers who are too stupid to see the obvious.

Reply via email to