Java J2EE Portal
Enterprise Java Station
J2EE curve
Java News / Articles
Java News / Articles
Using Apache Geronimo In Real World JavaEE Applications
Building User Interfaces Using Google Web Toolkit (GWT)
Java conference
JavaOne Notes, Plans And Session Picks
Processing...
Buy Java, Deals On Software Technology Store
Click here for great deals on computers, laptops, software and books
AJAX Security Threats and Performance Challenges PDF Print
Written by Content Team   
Feb 06, 2006 at 10:58 PM

Forum Systems has issued an alert for AJAX-related security threats and performance issues. AJAX transforms a user's Web browser into a Web services portal, thus exposing it to potentially corrupted data that can cause the browser to crash or perform poorly; malformed messages can disrupt server performance due to excessive parsing and exception handling.

By enabling the creation of interactive and highly responsive Web pages that are interoperable with Web Services, Ajax also dramatically increases the amount of XML, text or HTML network traffic being transmitted. The use of XML as the content type for requests and response payloads means that applications will be exposed to new security vulnerabilities and application performance degradation. Forum Systems recommends that organizations implement server-side content filtering, Web Services Security and XML Acceleration to ensure scalable and secure Ajax applications.

While these threat possibilities are being expressed by experts at Forum Systems, one wonders if the real threat to AJAX applications comes from lack of standards, frameworks and most importantly developers jumping the gun and messing up the code for AJAX applications.

Related:
>> Is AJAX worth adopting?
>> Ajax technologies aren't particularly new or sexy
>> Ruby on Rails is suited to AJAX
>> AJAX Books


User Comments

Comment by Noname on 2006-02-07 06:13:03
The frameworks are coming... the applications developed before these AJAX frameworks and standards get established, are bound to be a mess.
Your Name / Email Address
Comment
Spam Protection - Please enter the code in the image -

Listen to code


Add This Feed Button

Enter your Email

IndicThreads.com Conference On Java Technology, Pune, India
Java Expert Interviews
RoelStalmanOracleJDeveloper
JDeveloper is the most comprehensive Java IDE available
Direct Web Remoting (DWR) Creator - Joe Walker
With Direct Web Remoting (DWR) unnecessary complexity is a bug
Pradeep Chopra Whizlabs
Certifying your way to success
Processing...
Go to top of page  Home |
SiteMap

Copyright 2004 to 2008 Rightrix Solutions. All rights reserved. All product names are trademarks of their respective companies. Java and all Java-based marks are trademarks or registered trademarks of Sun Microsystems, Inc. in the United States and other countries. Rightrix Solutions and IndicThreads.com are independent of Sun Microsystems, Inc.

Views expressed at IndicThreads.com reflect the views of the authors alone, and do not necessarily reflect those of IndicThreads.com. IndicThreads.com and it's authors are not responsible for reader comments and opinions.

Enterprise Java J2EE JEE Portal >> IndicThreads.com