Top 8 - Web 2.0 Security Threats

Got this from a mailing list - the top 8 security threats in Web 2.0 applications.

1. Insufficient Authentication Controls
2. Cross Site Scripting (XSS)
3. Cross Site Request Forgery (CSRF)
4. Phishing
5. Information Leakage
6. Injection Flaws
7. Information Integrity
8. Insufficient Anti-automation

Get the full detail here, what do you think? In my case, #2 and #6 are the two major challenges in my environment.

Published Wed, Feb 18 2009 14:08 by qbernard
Filed under: ,

Comments

# Windows 2008 Security - Top 8 - Web 2.0 Security Threats said on 18 February, 2009 05:04 AM

Pingback from  Windows 2008 Security  - Top 8 - Web 2.0 Security Threats

# Walter said on 18 February, 2009 01:52 PM

technically the #2 and #6 are mainly developer issues. When developer fail to write quality code, you going going to suffer :)