Java Consultant wrote: Good Post...
Java Software Programmer..
|
Did you read today's front page stories & breaking news?
BLOG-N-PLAY.COM
Who is reading your blog anyway? -Start blogging at your favorite magazine's Website and get published in less than three minutes! blog-n-play.com SYS-CON MAGAZINES |
TODAY'S TOP SOA & WEBSERVICES LINKS Real-World AJAX Book Preview
JSON - An Attempt to Bring XSS Back
JSON lets one take advantage of the 'On Demand Javascript/Script Tag hack' described earlier. This technique allows new HTML script tags to be dynamically generated and the 'script' to be downloaded from any server. When the downloaded script is made up of data formatted in JSON, the script tag is effectively being used to download new data across domains outside of the same-origin policy.
Reader Feedback: Page 1 of 1
FEATURED WHITE PAPERS YOUR FEEDBACK
SUBSCRIBE TO THE WORLD'S MOST POWERFUL NEWSLETTERS
|
SYS-CON FEATURED WHITEPAPERS BREAKING XML NEWS
|
||||||||||||||||||||||||||||||||||||||||||||||