<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:trackback="http://madskills.com/public/xml/rss/module/trackback/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/"><channel><title>Безопасность</title><link>http://relib.com/blogs/bazile/category/51.aspx</link><description>Безопасность</description><managingEditor>Василий Петрухин</managingEditor><dc:language>ru-RU</dc:language><generator>.Text Version 0.95.2004.102</generator><item><dc:creator>Василий Петрухин</dc:creator><title>10 самых распространенных способов атак Web 2.0 приложений</title><link>http://relib.com/blogs/bazile/archive/2006/10/17/top10_web2_attack_vectors.aspx</link><pubDate>Tue, 17 Oct 2006 12:39:00 GMT</pubDate><guid>http://relib.com/blogs/bazile/archive/2006/10/17/top10_web2_attack_vectors.aspx</guid><wfw:comment>http://relib.com/blogs/bazile/comments/6823.aspx</wfw:comment><comments>http://relib.com/blogs/bazile/archive/2006/10/17/top10_web2_attack_vectors.aspx#Feedback</comments><slash:comments>0</slash:comments><wfw:commentRss>http://relib.com/blogs/bazile/comments/commentRss/6823.aspx</wfw:commentRss><trackback:ping>http://relib.com/blogs/bazile/services/trackbacks/6823.aspx</trackback:ping><description>&lt;P&gt;Советую прочитать статью &lt;A href="http://www.net-security.org/article.php?id=949"&gt;Top 10 Web 2.0 Attack Vectors&lt;/A&gt;. Как обычно новые технологии одновременно открывают новые возможности для "плохих парней". Вот они:&lt;/P&gt;
&lt;OL&gt;
&lt;LI&gt;Cross-site scripting in AJAX 
&lt;LI&gt;XML/XML schema poisoning 
&lt;LI&gt;Malicious AJAX code execution 
&lt;LI&gt;RSS / Atom injection 
&lt;LI&gt;WSDL scanning and enumeration 
&lt;LI&gt;Client side validation in AJAX routines 
&lt;LI&gt;Web services routing issues (WS-Routing) 
&lt;LI&gt;Parameter manipulation with SOAP 
&lt;LI&gt;XPATH injection in SOAP message 
&lt;LI&gt;RIA thick client binary manipulation&lt;/LI&gt;&lt;/OL&gt;&lt;img src ="http://relib.com/blogs/bazile/aggbug/6823.aspx" width = "1" height = "1" /&gt;</description></item></channel></rss>