Slashdot Mirror


AJAX May Be Considered Harmful

87C751 writes "Security lists are abuzz about a presentation from the 23C3 conference, which details a fundamental design flaw in Javascript. The technique, called Prototype Hijacking, allows an attacker to redefine any feature of Javascript. The paper is called 'Subverting AJAX' (pdf), and outlines a possible Web Worm that lives in the very fabric of Web 2.0 and could kill the Web as we know it."

4 of 308 comments (clear)

  1. first post by Anonymous Coward · · Score: 5, Funny

    So can I hijack slashdot to always get the first post?

  2. Web 2.0.1 by ticklish2day · · Score: 5, Funny

    Patch the hole and release Web 2.0.1. Good thing there's already a Web 3.0 in the works.

  3. Re:notabug by mctk · · Score: 5, Funny

    Society of Hysteria? SOCIETY OF HYSTERIA? aaaaaaaaah! SAVE YOURSELF!

    --
    Paul Grosfield - the quicker picker upper.
  4. On the next episode of Days of Our Web2.0 Lives... by Chineseyes · · Score: 5, Funny

    A Worm that lives in the very fabric of Web 2.0 and could kill the Web as we know it lurks is the deep dark recesses of the javascript
    Who is this masked man known as the worm?
    Why does he hate Web 2.0 so much?
    Will this worm try to make us revert to Web 1.0?
    And does this worm have anything to do with disappearances of Web 1.1 through Web 1.9?
    This and much much more on the next epside of Days of our Web 2.0 Lives

    --
    I think the invisible hand of the market has its middle finger extended

    --A wise old fart named SC0RN