AJAXWorld News Desk
Watchfire's Danny Allan Asks "How Secure Is Your Web 2.0 Site?"
Building and securing next-generation applications
Sep. 21, 2007 05:15 PM
As more and more Websites incorporate Web 2.0 technologies
including Web services, service-oriented architecture (SOA), and AJAX to perform more
critical online transactions one thing is certain - Web 2.0 technologies
increase an organization’s security risks. Web 2.0 carries a high profile and
there is increasing pressure on developers to quickly adopt and deploy Web 2.0
technologies. Developers not well versed in security may not properly protect
their code and attackers have quickly learned to exploit the shortcomings. These
common Web 2.0 vulnerabilities will be demonstrated by Danny Allan in his
session at AJAXWorld 2007 West, including techniques for exploiting and
protecting Web services and AJAX,
and the attacks that they can enable. The leading Web 2.0 and RIA event will
take place on September 23-26, 2007, at the Santa
Clara Convention Center
in Santa Clara, CA.
Danny Allan is director of security research with
Watchfire, an IBM Company. In his role as a security researcher he is closely
involved with enterprise global customer deployments, researching and
evaluating technologies, and helping define and recommend strategic directions
for Watchfire’s security solutions.
Click Here - For Discounted
Registration
Click Here - To Sponsor AJAXWorld
The world’s leading Rich Internet Applications & Web 2.0
event is expected to attract more than 1,000 i-technology developers. AJAXWorld
grew from a single track, one-day seminar, less than a year ago, into a
four-day international conference & expo with more than 150 sessions
delivered in 10 simultaneous tracks, by more than 150 faculty members.
Track 01: Rich Internet Applications
Track 02: Web 2.0 Enterprise
Mashups
Track 03: Enterprise AJAX
Track 04: RIA Frameworks & Toolkits
Track 05: Security in RIA Applications
Track 06: Hot Topics
Track 07: iPhone AJAX Applications
Track 08: Advanced AJAX
Track 09: Platform Choices / Real-World AJAX
Track 10: OpenLaszlo Diamond Track
The conference now includes the world famous AJAXWorld University's AJAX Developer Bootcamp, OpenLaszlo
Track and Adobe Flex Developer Bootcamp. This year’s AJAXWorld Expo Floor is
expected to display bleeding edge RIA technologies from the leading AJAX vendors.
AJAXWorld 2007 East Conference & Expo Sponsored by the World's Top Web 2.0
and RIA Technology Leaders!
AJAXWorld Conference & Expo 2007 East
sponsors and exhibitors included: Laszlo
Systems (Diamond Sponsor), JackBe
(Platinum Sponsor), Adobe (Platinum
Sponsor), Cynergy (Platinum
Sponsor), Backbase (Gold Sponsor), Google (Gold Sponsor), Nexaweb (Gold Sponsor), ICEsoft (Gold Sponsor), Oracle (Gold Sponsor), Helmi Technologies (Gold Sponsor),
JetBrains (Gold Sponsor), TIBCO (Gold Sponsor), Kapow Technologies (Gold Sponsor), Sun Microsystems (Silver Sponsor), Parasoft (Silver Sponsor), Servoy (Silver Sponsor), Etelos (Silver Sponsor), Microsoft (Expo Plus Sponsor), Lightstreamer (Exhibitor Plus
Sponsor), IT Mill (Exhibitor
Plus Sponsor), FrogLogic (Exhibitor
Plus Sponsor), ThinWire (Expo Sponsor), Quasar Tecnologies (Expo Sponsor), Zapatec (Exhibitor Plus Sponsor), MB Technologies Bindows (Exhibitor), OpenSpot (Exhibitor), ILOG (Exhibitor), Passport Corporation (Exhibitor), Addison-Wesley (Exhibitor), The Thomson Corporation (Exhibitor), Isomorphic Software-SmartClient (Exhibitor), Universal Mind (Exhibitor), Farata Systems (Exhibitor Plus),
Manning Publications (AJAX Book
Sponsor), Apress (AJAX Book Sponsor), Conference Guru (Media Sponsor), Flash Goddess (Media Sponsor), AJAXWorld Magazine (Media Sponsor), Web 2.0 Journal (Media Sponsor), SYS-CON.TV (Media Sponsor), IT Mill (Media Sponsor), Methods & Tools (Media Sponsor),
Web 2.0 Journal (Media Sponsor), and OASIS.
As of Today OpenAjax Alliance Members Include: 24SevenOffice, abiss.gr, ActiveGrid,
ActiveState, Adobe, American Greetings, Aplix Corporation, Appeon, Aptana,
Arimaan Global Consulting, BEA Systems, Cisco
Systems, Coradiant, Curl, Custom
Credit Systems (Thinwire), Document Advantage,
Dojo Foundation DreamFace Interactive, Eclipse Foundation, edge IPK, eLink
Business Innovations, ESRI, F5, Fidelity
Investments, Finetooth, Getahead (DWR), Global Computer Enterprises, GoETC, Google,
Helmi Technologies, HR-XML, IBM,
ICEsoft, Ikivo,
ILOG, Innoopract,
iPolipo, Isomorphic
Software, IT MILL, JackBe, Javeline,
JSSL, JWAX,
Laszlo Systems, Lightstreamer, Microsoft, MobileAware, Mozilla Corporation, NetScript Technologies, Nexaweb, Nitobi,
Novell, OpenLink Software, OpenSpot, OpenSymphony
(OpenQA), Openwave Systems, Opera, OpSource,
Oracle, OS3.IT,
RadView, Redmonk,
RIFT Technologies, SAP, Scalix,
Seagull Software, Service-Now.com, Sitepen, Software
AG, Sun Microsystems, Tealeaf Technology, Teleca Mobile, Telerik,
The Frontside, Tibco, Transmend,
Vertex Logic, Visible Measures, Visual WebGui, Volantis Systems, Webtide, XML11,
Xucia, Zend,
Zimbra, and Zoho.
About RIA News DeskEver since Google popularized a smarter, more responsive and interactive Web experience by using AJAX (Asynchronous JavaScript + XML) for its Google Maps & Gmail applications, SYS-CON's RIA News Desk has been covering every aspect of Rich Internet Applications and those creating and deploying them. If you have breaking RIA news, please send it to RIA@sys-con.com to share your product and company news coverage with AJAXWorld readers.