• Virus
  • Fennec
  • Information Security
  • Promoting Security
  • Security
  • Firefox
  • Browsers
  • Physical Security
  • Phones
  • Facebook
  • Mozilla Aims At Reducing XSS Flaws Thanks To New Technology


    25 June, 2009, by Desire Athow

    Mozilla foundation has announced that it is working on a new technology that could help in tackling the gruesome threat of Cross-Site Scripting (XSS) attacks, which have been inflicting damages to websites since several years.

    XSS flaws pave way for malicious codes to be injected into genuine websites, which users feel free to click, leading to tricking users to steal their crucial information.

    In a bid to take on the soaring XSS attacks, Mozilla has come up with a new technology, codenamed as “Content Security Policy”, which aims at handling the attacks by enabling website administrators to set directives notifying about the trustworthy domains.

    Along with the capability of handling XSS, CSP also tries to address packet sniffing as well as clickjacking attacks by pinning down directives for which domains can integrate resources and need https.

    Asserting on the benefits of the new security tool, Brandon Sterne, Mozilla's security programme manager, said in a statement, “Because CSP can be configured to notify the protected site when an attack is blocked, CSP will even benefit users of older browsers, by helping sites and plug vulnerabilities quickly”.

    Article continues after advert

    The open source foundation claimed that CSP will be completely backward compatible, and won't affect browsers and websites which don't support it.

    and join more than 1600 other followers.

    Continued on next page Tags: Mozilla, User Security, Web security, cross-site scripting, personal security
    Desire Athow
    Posted by
    Desire Athow
    on 25 June, 2009

    Désiré Athow is the Content Editor of ITProPortal.com and has been reporting on technology and telecommunication since 1999. You can follow him on Twitter.
    ITProPortal.com - Sponsored Section

    Featured Content

    1. The New Voice of the CIO. 158 CIOs in midsized businesses across 31 countries reveal their insights and vision for enhancing competitiveness over the next five years.

      Download Document

    Customer Case Studies

    1. How a wine wholesaler improved the flow of information
      Download full case study
    2. The server that made an entire university smarter
      Download full case study

    Videos

    Connecting in a smarter planet:

    Latest Tweets





     





    News Now Logo




    Forgot your password?