Over a million developers have joined DZone.

Advanced Web Application Security

· Web Dev Zone

Easily build powerful user management, authentication, and authorization into your web and mobile applications. Download this Forrester report on the new landscape of Customer Identity and Access Management, brought to you in partnership with Stormpath.

The security landscape has changed dramatically in the past 12 months. Unless you are aware of CSRF, Javascript Highjacking and the many ways to fool an XSS filter, it’s likely that your web application will not be secure. Attackers used to concentrate on ActiveX, but now Javascript, CSS and even simple HTML elements are used against websites. This session, presented at the Grails eXchange 2007, will outline the challenges facing the inhabitants of this strange word called Web 2.0 and the options for protection, from the point of view of both site owners and web users.

Joe Walker, works on advanced development techniques such as Ajax and is the creator of DWR - Direct Web Remoting - the most popular Ajax toolkit for Java.

The Web Dev Zone is brought to you by Stormpath—offering a complete, pre-built User Management API for building web and mobile applications, and APIs. Download our new whitepaper: "Build Versus Buy: Customer Identity Management for Web and Mobile Applications".

Topics:

Published at DZone with permission of Schalk Neethling .

Opinions expressed by DZone contributors are their own.

{{ parent.title || parent.header.title}}

{{ parent.tldr }}

{{ parent.urlSource.name }}