Mozilla foundation has announced that it is working on a new technology that could help in tackling the gruesome threat of Cross-Site Scripting (XSS) attacks, which have been inflicting damages to websites since several years.
XSS flaws pave way for malicious codes to be injected into genuine websites, which users feel free to click, leading to tricking users to steal their crucial information.
In a bid to take on the soaring XSS attacks, Mozilla has come up with a new technology, codenamed as “Content Security Policy”, which aims at handling the attacks by enabling website administrators to set directives notifying about the trustworthy domains.
Along with the capability of handling XSS, CSP also tries to address packet sniffing as well as clickjacking attacks by pinning down directives for which domains can integrate resources and need https.
Asserting on the benefits of the new security tool, Brandon Sterne, Mozilla's security programme manager, said in a statement, “Because CSP can be configured to notify the protected site when an attack is blocked, CSP will even benefit users of older browsers, by helping sites and plug vulnerabilities quickly”.
The open source foundation claimed that CSP will be completely backward compatible, and won't affect browsers and websites which don't support it.
and join more than 1600 other followers.
Continued on next page Tags: Mozilla, User Security, Web security, cross-site scripting, personal security
Hot Topics

Office web is the latest addition to Microsoft's Office business suite and is set to be the company's most revolutionary version.

Microsoft's 14th version of its award winning, multi-billion dollar cash cow business suite, is the company's most ambitious to date.

Spotify is certainly one of the most popular online music websites in the world which is a feat for a service that was officially launched only in February 2009
Featured Content
- The New Voice of the CIO. 158 CIOs in midsized businesses across 31 countries reveal their insights and vision for enhancing
competitiveness over the next five years.
Download Document
Customer Case Studies
- How a wine wholesaler improved the flow of information
Download full case study
- The server that made an entire university smarter
Download full case study
Videos
Latest Tweets

Comments