Loading...
Flash Player 9 (or above) is needed to view slideshows. We have detected that you do not have it on your computer.To install it, go here
The XML Threat Model and XML and Web 2.0 Threats You Never Knew About
Organizations that are implementing Web services and beginning to look at Web 2.0 and rich Internet applications are discovering that unique security challenges can surface throughout the various phases of the Web service lifecycle. Get the full rundown of these new and unique challenges.
435 views | comments | 0 favorites | 12 downloads | 0 embeds (Stats)
More Info
This slideshow is Public
Total Views: 435 on Slideshare: 435 from embeds: 0
Slideshow Transcript
- Slide 1: The XML Threat Model
and XML and Web 2.0 Threats You
20
Never Knew About
Steve Orrin
Dir of Security Solutions, SSG-SPI
Intel Corp.
Agenda
• The XML/SOA Threat Model
• Details on XML/Web Services & SOA Threats
• Next Generation and Web 2.0 Threats
• Summary
• Intel’s SOA Security Toolkit
• Q&A
1
- Slide 2: XML/Web Services Attacks
• Old Attacks still valid
– Common Web Vulnerabilities
– Injection Attacks
j
– Buffer Overflow
– Denial of Service
• The New Manipulation Attacks
– Entity and Referral Attacks
– DTD and Schema Attacks
– Parser Attacks
• The Next Generation Attacks
– Web Service Enabled Application At