<?xml version="1.0" encoding="UTF-8"?>











<rss version="2.0" xmlns:jf="http://www.jivesoftware.com/xmlns/jiveforums/rss">



<channel>
    <title>Support Forums: Message List - DevX Article: Using AJAX to Spy On You</title>
    <link>http://www.theserverside.com</link>
    <description>Most recent forum messages</description>
    <language>en</language>
    
        <generator>Jive Forums Silver 5.5.30 (www.jivesoftware.com)</generator>
    
    <pubDate>Wed, 19 Jun 2013 16:52:22 -0400</pubDate>


    <item>

        <title>DevX Article: Using AJAX to Spy On You</title>
        <link>http://www.theserverside.com/discussions/thread.tss?thread_id=35790</link>

        

        
            <description><![CDATA[[SARCASTIC MODE ON]<br><br>I'm no terrorist, so I've nothing to hide.<br><br>[SARCASTIC MODE OFF]<br><br>Cheers and happy coding]]></description>
        

        <pubDate>Wed, 10 Aug 2005 17:52:12 -0400</pubDate>

        

        <jf:creationDate>Wed, 10 Aug 2005 17:52:12 -0400</jf:creationDate>
        <jf:modificationDate>Wed, 10 Aug 2005 17:52:12 -0400</jf:modificationDate>
        <jf:date>Aug 10, 2005</jf:date>
        <jf:author>Martin Straus</jf:author>
        <jf:replyCount>0</jf:replyCount>
    </item>


    <item>

        <title>DevX Article: Using AJAX to Spy On You</title>
        <link>http://www.theserverside.com/discussions/thread.tss?thread_id=35790</link>

        

        
            <description><![CDATA[Web trend capture tools have been able to ,for example, record and log a users mouse movements which is done without AJAX for quite some time, so I think the argument that AJAX is gonna reap awful problems is rather far fetched.<br>Whilst AJAX is a tool...]]></description>
        

        <pubDate>Wed, 10 Aug 2005 12:32:12 -0400</pubDate>

        

        <jf:creationDate>Wed, 10 Aug 2005 12:32:12 -0400</jf:creationDate>
        <jf:modificationDate>Wed, 10 Aug 2005 12:32:12 -0400</jf:modificationDate>
        <jf:date>Aug 10, 2005</jf:date>
        <jf:author>Bass Wood</jf:author>
        <jf:replyCount>0</jf:replyCount>
    </item>


    <item>

        <title>DevX Article: Using AJAX to Spy On You</title>
        <link>http://www.theserverside.com/discussions/thread.tss?thread_id=35790</link>

        

        
            <description><![CDATA[He's got a point, albeit a fairly tenuous one. The only concrete example that he gives of abusing the capabilities of Ajax is transmitting deleted text from an HTML form. That could be accomplished with plain ol' DHTML too, just add a hidden form field...]]></description>
        

        <pubDate>Wed, 10 Aug 2005 12:07:28 -0400</pubDate>

        

        <jf:creationDate>Wed, 10 Aug 2005 12:07:28 -0400</jf:creationDate>
        <jf:modificationDate>Wed, 10 Aug 2005 12:07:28 -0400</jf:modificationDate>
        <jf:date>Aug 10, 2005</jf:date>
        <jf:author>dave crane</jf:author>
        <jf:replyCount>0</jf:replyCount>
    </item>


    <item>

        <title>Ah well, just the tip of the iceberg...</title>
        <link>http://www.theserverside.com/discussions/thread.tss?thread_id=35790</link>

        

        
            <description><![CDATA[Nothing new here. The real thing will surface slowly. Ajax has the potential of more people getting used to execute more complex downloaded code on their browsers. Essentially much the same as that we had with ActiveX and Java before that. Of course,...]]></description>
        

        <pubDate>Wed, 10 Aug 2005 12:01:10 -0400</pubDate>

        

        <jf:creationDate>Wed, 10 Aug 2005 12:01:10 -0400</jf:creationDate>
        <jf:modificationDate>Wed, 10 Aug 2005 12:01:10 -0400</jf:modificationDate>
        <jf:date>Aug 10, 2005</jf:date>
        <jf:author>Karl Banke</jf:author>
        <jf:replyCount>0</jf:replyCount>
    </item>


    <item>

        <title>DevX Article: Using AJAX to Spy On You</title>
        <link>http://www.theserverside.com/discussions/thread.tss?thread_id=35790</link>

        

        
            <description><![CDATA[I agree with Dennis. This article is IMHO just FUD. The possability to spy on a user has probably been there since the first javascript-interpreter was integrated in a browser.<br>I also don't see that his examples are real-life ones.<br>No-one just...]]></description>
        

        <pubDate>Wed, 10 Aug 2005 11:36:17 -0400</pubDate>

        

        <jf:creationDate>Wed, 10 Aug 2005 11:36:17 -0400</jf:creationDate>
        <jf:modificationDate>Wed, 10 Aug 2005 11:36:17 -0400</jf:modificationDate>
        <jf:date>Aug 10, 2005</jf:date>
        <jf:author>Christoph Kutzinski</jf:author>
        <jf:replyCount>0</jf:replyCount>
    </item>


    <item>

        <title>DevX Article: Using AJAX to Spy On You</title>
        <link>http://www.theserverside.com/discussions/thread.tss?thread_id=35790</link>

        

        
            <description><![CDATA[<blockquote>To be fair, most of the &quot;evil&quot; applications cited above could have been done reasonably well even before the XMLHttpRequest came along.</blockquote><br>nuff said. This single paragraph makes the rest of the article redundant.]]></description>
        

        <pubDate>Wed, 10 Aug 2005 11:33:41 -0400</pubDate>

        

        <jf:creationDate>Wed, 10 Aug 2005 11:33:41 -0400</jf:creationDate>
        <jf:modificationDate>Wed, 10 Aug 2005 11:33:41 -0400</jf:modificationDate>
        <jf:date>Aug 10, 2005</jf:date>
        <jf:author>jelmer kuperus</jf:author>
        <jf:replyCount>0</jf:replyCount>
    </item>


    <item>

        <title>DevX Article: Using AJAX to Spy On You</title>
        <link>http://www.theserverside.com/discussions/thread.tss?thread_id=35790</link>

        

        
            <description><![CDATA[There is nothing in AJAX that makes it more easy to spy than plain HTML and javascript. You still have to collect everything you are intersted in , AJAX is not going to that for you (it is abstract anyway). Do you think that people who want to do this...]]></description>
        

        <pubDate>Wed, 10 Aug 2005 11:02:35 -0400</pubDate>

        

        <jf:creationDate>Wed, 10 Aug 2005 11:02:35 -0400</jf:creationDate>
        <jf:modificationDate>Wed, 10 Aug 2005 11:02:35 -0400</jf:modificationDate>
        <jf:date>Aug 10, 2005</jf:date>
        <jf:author>Dennis Bekkering</jf:author>
        <jf:replyCount>1</jf:replyCount>
    </item>


    <item>

        <title>A &amp;quot;preemptive script blocker&amp;quot; already exists</title>
        <link>http://www.theserverside.com/discussions/thread.tss?thread_id=35790</link>

        

        
            <description><![CDATA[It's called <b><a href="http://www.noscript.net" target="_blank">NoScript</a></b> and prevents JavaScript, Java and Flash execution from untrusted (not white-listed) sites.]]></description>
        

        <pubDate>Wed, 10 Aug 2005 10:47:39 -0400</pubDate>

        

        <jf:creationDate>Wed, 10 Aug 2005 10:47:39 -0400</jf:creationDate>
        <jf:modificationDate>Wed, 10 Aug 2005 10:47:39 -0400</jf:modificationDate>
        <jf:date>Aug 10, 2005</jf:date>
        <jf:author>Giorgio Maone</jf:author>
        <jf:replyCount>0</jf:replyCount>
    </item>


    <item>

        <title>Not the same as popups</title>
        <link>http://www.theserverside.com/discussions/thread.tss?thread_id=35790</link>

        

        
            <description><![CDATA[<blockquote>I belive this threat will be gone quite soon as people probably will install &quot;request-stoppers&quot; that halts the brower from send data unless a button is pressed. Just like we now have popup-blockers, firewalls etc...]]></description>
        

        <pubDate>Wed, 10 Aug 2005 10:05:13 -0400</pubDate>

        

        <jf:creationDate>Wed, 10 Aug 2005 10:05:13 -0400</jf:creationDate>
        <jf:modificationDate>Wed, 10 Aug 2005 10:05:13 -0400</jf:modificationDate>
        <jf:date>Aug 10, 2005</jf:date>
        <jf:author>Vincent Frisina</jf:author>
        <jf:replyCount>1</jf:replyCount>
    </item>


    <item>

        <title>Just give it a name</title>
        <link>http://www.theserverside.com/discussions/thread.tss?thread_id=35790</link>

        

        
            <description><![CDATA[Many developpers are using the &quot;AJAX way&quot; for a long time but now this has a name and that's the only difference.<br>Do you think little &quot;hackers&quot; waited for it to bear a name? No! There are a lot of site using AJAX technique to...]]></description>
        

        <pubDate>Wed, 10 Aug 2005 09:50:32 -0400</pubDate>

        

        <jf:creationDate>Wed, 10 Aug 2005 09:50:32 -0400</jf:creationDate>
        <jf:modificationDate>Wed, 10 Aug 2005 09:50:32 -0400</jf:modificationDate>
        <jf:date>Aug 10, 2005</jf:date>
        <jf:author>Serge Libotte</jf:author>
        <jf:replyCount>0</jf:replyCount>
    </item>


    <item>

        <title>Only asked for</title>
        <link>http://www.theserverside.com/discussions/thread.tss?thread_id=35790</link>

        

        
            <description><![CDATA[it is a shame that this will probably happen, you could also limit requests to SSL only and not accept untrusted certs. then application data wouldn't be sent in plain text and you would know where the information is going.]]></description>
        

        <pubDate>Wed, 10 Aug 2005 09:14:02 -0400</pubDate>

        

        <jf:creationDate>Wed, 10 Aug 2005 09:14:02 -0400</jf:creationDate>
        <jf:modificationDate>Wed, 10 Aug 2005 09:14:02 -0400</jf:modificationDate>
        <jf:date>Aug 10, 2005</jf:date>
        <jf:author>analog boy</jf:author>
        <jf:replyCount>0</jf:replyCount>
    </item>


    <item>

        <title>Only asked for</title>
        <link>http://www.theserverside.com/discussions/thread.tss?thread_id=35790</link>

        

        
            <description><![CDATA[I belive this threat will be gone quite soon as people probably will install &quot;request-stoppers&quot; that halts the brower from send data unless a button is pressed. Just like we now have popup-blockers, firewalls etc etc.<br><br>We just have to...]]></description>
        

        <pubDate>Wed, 10 Aug 2005 09:03:50 -0400</pubDate>

        

        <jf:creationDate>Wed, 10 Aug 2005 09:03:50 -0400</jf:creationDate>
        <jf:modificationDate>Wed, 10 Aug 2005 09:03:50 -0400</jf:modificationDate>
        <jf:date>Aug 10, 2005</jf:date>
        <jf:author>Roland Carlsson</jf:author>
        <jf:replyCount>3</jf:replyCount>
    </item>


    <item>

        <title>DevX Article: Using AJAX to Spy On You</title>
        <link>http://www.theserverside.com/discussions/thread.tss?thread_id=35790</link>

        

        
            <description><![CDATA[In &quot;<a href="http://www.devx.com/webdev/Article/28861" target="_blank">Using the XMLHttpRequest Object and AJAX to Spy On You</a>&quot; from DevX.com, Earle Castledine offers some warning about AJAX: &quot;While the XMLHttpRequest object and AJAX...]]></description>
        

        <pubDate>Wed, 10 Aug 2005 07:30:03 -0400</pubDate>

        

        <jf:creationDate>Wed, 10 Aug 2005 07:30:03 -0400</jf:creationDate>
        <jf:modificationDate>Wed, 10 Aug 2005 07:30:03 -0400</jf:modificationDate>
        <jf:date>Aug 10, 2005</jf:date>
        <jf:author>Joseph Ottinger</jf:author>
        <jf:replyCount>12</jf:replyCount>
    </item>



</channel>
</rss>

