Search Books

Security of Java based AJAX frameworks: Security challenges in the Web 2.0 era

Author Georg Raffer
Publisher VDM Verlag Dr. Müller
📄 Viewing lite version Full site ›
🌎 Shop on Amazon — choose country
58.63 67.00 USD
🛒 Buy New on Amazon 🇺🇸 🏷 Buy Used — $74.20

✓ Usually ships in 24 hours

Share:
Book Details
Author(s)Georg Raffer
ISBN / ASIN363914192X
ISBN-139783639141924
AvailabilityUsually ships in 24 hours
Sales Rank20,319,870
MarketplaceUnited States 🇺🇸

Description

Unfortunately, while AJAX incorporates the bestcapabilities of both thick-client and thin-clientarchitectures, it is vulnerable to the same attacksthat affect both types of applications. Thick-clientapplications are insecure because they could bedecompiled and analyzed by an attacker. The sameproblem exists with AJAX applications - in fact evenmore so, because in most cases the attacker does noteven need to go to the effort of decompiling theprogram. Knowing the attack surface and thearchitectural weakness of a chosen AJAX frameworklays the foundation for a software architect todesign and develop secure and enterprise-ready AJAXweb applications. This paper does not only discussgeneral vulnerabilities of AJAX-based webapplications, but reflects these in a real-worldexample showing the attack surface for applicationsbuilt with state-of-the-art AJAX frameworks likeJBoss Seam and Google Web Toolkit. The findings ofthis paper help software architects and developers toget a practical understanding of potential attacks.They are a contribution to increase the security ofweb applications.