Opera Arioso!

Tuesday, July 8th, 2008

I'm pretty excited by Opera's Userscripts that allow you to write Javascript files that are far richer than greasemonkey Userscripts -which is also supported by Opera- I've written a security plugin for Opera last night, that attempts to mitigate various Javascript attack vectors. But, one problem for writing a security ...

Crawling AJAX

Saturday, July 5th, 2008

Traditionally, a web spider system is tasked with connecting to a server, pulling down the HTML document, scanning the document for anchor links to other HTTP URLs and repeating the same process on all of the discovered URLs. Each URL represents a different state of the traditional web site. In ...

Zero-day flaw haunts Internet Explorer

Thursday, June 26th, 2008

An unpatched cross-domain vulnerability in Microsoft’s flagship Internet Explorer browser could expose Windows users to cookie hijacks and credentials theft attacks, according to a warning from security researchers. The zero-day flaw, which has been reported to Microsoft, is a variation of Eduardo Vela’s IE Ghost Busters talk: Do you believe in ghosts? ...

17 Greasemonkey Scripts to Turbocharge Your Browser

Wednesday, June 25th, 2008

The Internet offers a wealth of excellent tools, information, and entertainment--and it asks very little from us in return. So don't get upset when a poorly designed online tool or site gets on your nerves; instead, use Greasemonkey, a free Firefox add-on that harnesses the power of JavaScript to right ...

$1B Market for Meddling With DNS Poses Security Problem

Tuesday, June 24th, 2008

The interception of Internet traffic to snoop on phone calls or track surfers' behavior is a hot topic -- but what's keeping members of ICANN's Security and Stability Advisory Committee up at night is the interception of traffic to and from sites that don't even exist. They explained why in ...