3

Slashdot | Mozilla Experiments With Site Security Policy

http://it.slashdot.org

Mozilla has opened comments for an new experimental browser security policy, dubbed Site Security Policy (SSP), designed to protect against XSS, CSRF, and malware-laced IFRAME attacks which infected over 1.5 million pages Web earlier this year. Security experts and developers are excited because SSP extends control over Web 2.0 applications that allow users to upload/include potentially harmful HTML/JavaScript such as on iGoogle, eBay Auction Listings, Roxer Pages, Windows Live, MySpace / Facebook Widgets, and so on. Banner ads from CDNs have had similar problems with JavaScript malware on social networks. The prototype Firefox SSP add-on aims to provide website owners with granular control over what the third-party content they include is allowed to do and where its supposed to originate. No word if Internet Explorer or Opera will support the initiative.

Read »
LouCypher's picture
Created by LouCypher 24 weeks 22 hours ago – Made popular 24 weeks 22 hours ago
Category: Mozilla Experimental   Tags:

Best published scoops - Mozilla Experimental

Best karma users

  1. graphicsguru's picture
    graphicsguru
  2. jan's picture
    jan
  3. LouCypher's picture
    LouCypher
  4. firefoxfacts's picture
    firefoxfacts
  5. passiton's picture
    passiton
  6. headlines's picture
    headlines
  7. mozilladaily's picture
    mozilladaily
  8. talkmozilla's picture
    talkmozilla
  9. MozillaSuite's picture
    MozillaSuite
  10. AMO's picture
    AMO

Poll

glubble