Wednesday, September 26, 2007

Some Interesting Items On Web Security

Here's a paper from researchers at the University of Washington about SpyProxy, which analyzes web sites looking for malicious content based on behaviorial characteristics. The paper is a bit heavy and academic, but it has some colorful diagrams for illiterate people like me that make the point.

Here's another exposition about DNS pinning, which takes advantage of the Same Origin policy used by browsers. Same Origin has been exploited to fool browsers into gathering information about an internal network and sending it to a server on the Internet.


