In my predictions for security in 2012, I pointed out that hand-in-hand with an increase in governmental control over the internet will come a spate of attacks from those that oppose such control.I also harboured some concern over the industrial systems that control infrastructure such as water, sewage, electrical grid, public transport and so on. The year has actually started with a lot of tension around exactly such problems. Towards the end of 2011, Anonymous targeted US Government sites ...
They say that the only certainties in life are tax and death. Nowadays there seems to be a third: you need to mobilise your business, or go out of business. But while this might be a certainty for many, what is less certain is how you go about this. Especially because it sometimes feels like you are getting conflicting, yet equally eloquent and passionate, advice about which path to take: native, HTML5, hybrid, and so on, and so on.HTML5 is ...
The web is in a state of transition where the experience and more so, the language of the web is receiving a makeover. This update, however, does not just improve the functionality, but promotes everybody to speak the same language. The open web, or a standardised architecture, is very promising and this doesn't necessarily need to happen in one extreme and daunting overhaul. That's according to Robert Nyman, Technical Evangelist for Mozilla.The experience of the Web is evolving along with ...
In recent months, the web world was hit with a code exploit that affected many users across various web development platforms, from custom systems to Drupal and WordPress.org. This hack exploited a security vulnerability in the popular TimThumb image resizing PHP script, which allowed the hacker full access to any website running the older version of this script.An exploit of this nature, of course, didn't go unnoticed. Within hours of the exploit being publicised, developers and website owners alike ...
Last week, I wrote an article titled Is it time to rethink SSL?, where I pointed out that SSL's reliance on Certificate Authorities is inherently flawed due to the fact that there is no guarantee that a CA will never be compromised. One of the key problems with the CA model of certificate authentication is that once an application decides to trust a CA, there is no realistic rollback from that decision if the CA eventually proves to be untrustworthy. ...
The combination of scalability and flexibility is becoming more and more prevalent, encouraging a single web presence that is not only ubiquitous but adaptable to almost any platform available.
This and similar notions were common in most speaker presentations at this year's WordCamp held in Cape Town, South Africa.
A resounding concept brought to light by Jason Bagley, was introduced to the crowd in the form of some insightful rendering of CSS to provide websites with a flexible architecture. The ...
The recent attack on the lesser-known certificate authority known as DigiNotar, and previously on Comodo, has security experts pondering the future of certificate-based encryption and authentication. For many people, SSL or what is now generally known as TLS is some arcane security measure that involves certificates and usually results in an 's' being appended to the protocol they are using.Occasionally, it raises its head when you visit a website and your browser notifies you that a certificate is not ...
In the online world, the URL is ever-present. It is the digital home of businesses large and small, the currency of social exchange, the thread on which the hyperlinked web exists. There can be few more important building blocks to the internet as we know it, but all too often the humble URL has been abused or even downright ignored as technologies have pushed their way to the limelight.The URL has a long history. As with most the building blocks ...
If you're used to working with version control systems like CVS, Subversion or Git in order to keep track of changes to your code, then you will be well aware that changes to binary files such as images, just can't be tracked in the same way.Sure, there is no problem storing your binary data within any of these version control systems, but existing strategies either simply store the whole binary file in a single chunk, or store binary deltas. ...
Marketing and media companies are always looking for innovative ways to gauge consumer behaviour and activity online. It affects how accurately they're able to market their products according to age, gender, cultural demographics, and geography. There's a fine line, however, between savvy market research and bypassing the principles of consumer privacy.Many technology companies make it their mission to develop new technologies that practically deauthorise user choice about what is tracked and, even more subversively, how it's tracked.A recent ...