« ã¯ãã¹ãµã¤ãã®ã»ãã¥ãªãã£ã¢ãã« | ã¡ã¤ã³ | E4X-XSS èå¼±æ§ã«ã¤ã㦠» 2007å¹´01æ06æ¥ å®å ¨ãª JSON, å±éºãª JSON (Cross-site Including?) å ã®ã¨ã³ããªã§ã JSON ã«ã¤ãã¦ã¯ãJavaScript ã¨ãã¦å¯ä½ç¨ããããªã (ãããããããªã) ããã«ææ³éåã§ãããããã«ãç§å¯æ å ±ãå«ããã¼ã¿ãã©ã¼ãããã¨ãã¦ä½¿ç¨ãããã¨ãã§ããã®ã§ãã (Kazuho@Cybozu Labs: ã¯ãã¹ãµã¤ãã®ã»ãã¥ãªãã£ã¢ãã«) ã¨æ¸ããã®ã§ãããèªèãçãã£ãããã§ããJeremiah Grossman: Advanced Web Attack Techniques using GMail ã«ããã¨ãé åã®åæåæ¼ç®å [] ã®åä½ãå¤é¨ãã夿´ãããã¨ãã§ããæ³¨1ã¨ã®ãã¨ã å®éã«æå ã® Firefox 1.5 ã§è©¦ãã¦ã¿ãã¨ãããJS


{{#tags}}- {{label}}
{{/tags}}