2021年度ãªã¯ã«ã¼ã ã¨ã³ã¸ãã¢ã³ã¼ã¹æ°äººç ä¿®ã®è¬ç¾©è³æã§ã
2021年度ãªã¯ã«ã¼ã ã¨ã³ã¸ãã¢ã³ã¼ã¹æ°äººç ä¿®ã®è¬ç¾©è³æã§ã
Your shopping website is not an SPA. I repeat: your shopping website is not an SPA. Stop trying to sculpt David with a JS chainsaw and get yourself an HTML/CSS chisel.â Alex Russell (@slightlylate) 2021å¹´8æ10æ¥ ãã®ä¸»å¼µãçéï¼å°ãªãã¨ãèªåã®è¦³æ¸¬ç¯å²ï¼ã§ã¯å²ã¨ããè¦ããããããªããå®æçã«è©±é¡ã«ãªããããã¯ãªã®ããªã¼ã¨ã ã¾ãæè«ã¨ãã¦ãã³ã¬ã«ã¯æ¦ãåæãã¦ãããä¼ç¤¾ã®ã¹ã¿ã³ã¹ã¨ãç¸ã¾ã£ã¦ã常æ¥é ããã¼ãããèãã¦ãããããã¨ã§ãããã ã§ããããªæã«ãã®ãã¤ã¼ããçºè¦ãã¦ãããã«ããã«è¨åãã¦ã人ã ãè¦ã¦ããµã¨èªåã§ãç¾ç¶ãæ´çãã¦ãããããªã¼ã¨ããæ°æã¡ã«ãªã£ãã®ã§çãå·ã£ã次第ã
Webã¢ããªã±ã¼ã·ã§ã³ãå®è£ ãã¦ããã¨é«ç¢ºç㧠CORS ã®åé¡ã«ã¶ã¤ããã¾ããCORSãã©ã®ãããªãã®ãã¯ãªã³ã¯ããMDNãªã©æ¢åã®è§£èª¬ãèªãã®ãæã£åãæ©ãã¨æãã¾ãããããªããã®ããã«è¨è¨ãããã®ããã¨ãã観ç¹ã§ã®èª¬æã¯ãã¾ãè¦ãªããããæã®è³æã®è¨è¿°ãç¾å¨ã®ä»æ§ããã®æ¨æ¸¬ããã¨ã«æ´çãã¦ã¿ã¾ããã CORSã¨ã¯ ç¾ä»£ã®Webã¯ãã¡ã¤ã³åããã¨ã«ãã ãªãªã¸ã³ (Origin) ã¨ããæ¦å¿µ (RFC 6454) ããã¨ã«æ¨©é管çã¨ã¢ã¯ã»ã¹å¶å¾¡ãè¡ã£ã¦ãã¾ãããã®åºæ¬ã¨ãªãã®ã以ä¸ã®ã«ã¼ã«ã§ãã Same-origin policy (åä¸çæå ããªã·ã¼): åããªãªã¸ã³ã«ç±æ¥ãããªã½ã¼ã¹ã ããå¶å¾¡ã§ããã ä¸è¨Wikipediaè¨äºã«ããã¨SOPã®æ¦å¿µã¯1995å¹´ã®Netscape 2.02ã«å°å ¥ãããã®ãæåã®ããã§ããå½æã®ããã¥ã¡ã³ãã¼ã·ã§ã³ãèªãéããããã¯ã¦ã¤ã³ãã¦è¶ãã«å¥
ããã³ãã¨ã³ãé£è¼ã®5è¨äºç®ã§ãã HTML5ã2021å¹´ã®1æã«å»æ¢ããã¾ããã Webã¨ã³ã¸ãã¢ã¨ãã¦ããªããªæ´»èºããã¦ãæ¹ãã¨ã°ã¼ã¯ãã£ãããã¯ãªã¼ãã®ãããªè©æ¸ããæã¤æ¹ã«ã¨ã£ã¦ã¯ãä½ããã¾ãããã¨ãã話é¡ãã¨æãã¾ãã ããããªãããä»å¹´ãæ°äººããå ¥ã£ã¦ãã¦ãã ãã£ãã®ã§ãããã°ã©ãã³ã°ãå¦ç¿ä¸ã«HTML5ã¨ããæååã«æ©ã¾ãããªãããã«ãããããHTML5ã¨ã¯ä½ãããå»æ¢ãããçµç·¯ãã¾ã¨ãã¦ã¿ã¾ãã HTML5ã¨ã¯Webãµã¤ããä½ãã¨ãã«å¿ ãæ¸ããã¨ã«ãªãHTMLãWebãµã¤ãã®ã³ã³ãã³ããã¤ã¾ãä¸èº«ãæ§é ãä½ãããã«ä½¿ããã¼ã¯ã¢ããè¨èªã§ãã ããã¦ããã®æè¿çã¨ãã¦10å¹´ã»ã©åã«ç»å ´ããHTML5ãå½æ㯠Webãã¥ã¼ã¹ãªã©ã§çãã«ç¹éãçµã¾ãã¦ãã¾ãããããã®HTML5ãã¤ãããªãã ã2021å¹´1æ28æ¥ã«å»æ¢ããã¾ããã åºç¾©ã®HTML5 / ç義ã®HTML5HTML5
ã¦ã§ããã©ã¦ã¶ã¯ãããã¯ã¼ã¯ããæ§ã ãªãªã½ã¼ã¹ãéããããããå¦çãã¦çµã¿åããã¦ã¦ã§ããã¼ã¸ãã¬ã³ããªã³ã°ãã¾ãããªã½ã¼ã¹ãæããªãã¨ã¬ã³ããªã³ã°ã§ããªãã®ã§ããã®ä¸é£ã®å¦çã®ã©ãããé ããã¨ãã¼ã¸ã®è¡¨ç¤ºãé ããªãã¾ããã¬ã³ããªã³ã°ããã¿ããã«éå§ã§ããããã«ã¦ã§ããã©ã¦ã¶ã¯ãªã½ã¼ã¹ã®åå¾ããã®å¦çãæé©åããããã® API ãæä¾ãã¦ãã¾ããæ¬è¨äºã§ã¯ããããç¶²ç¾ çã«ç´¹ä»ããã¦ã§ãã¢ããªã®æ§è½æ¹åãå³ãä¸ã§ã©ã®ãããªãã©ã¦ã¶æ©è½ã使ããã®ããç¥ã£ã¦ããããã¨ãç®çã¨ãã¦ãã¾ããåæ©è½ã®å ·ä½çãªé©ç¨äºä¾ã«ã¤ãã¦ã¯ä»ã®è¨äºã«å§ãã¾ãã æ¬è¨äºã®å 容ã¯è¨äºå ¬éæç¹ã§ã®æ å ±ã«åºã¥ãã¦ãããé²è¦§æç¹ã§ã¯æ¢ã«å¤ããªã£ã¦ããå¯è½æ§ãããã¾ããææ°ã®æ£ç¢ºãªæ å ±ã¯ä¸æ¬¡æ å ±æºãåç §ãã¦ãã ãããã¾ãç¹å®ã®ãã©ã¦ã¶å®è£ ã«ã¤ãã¦è¨åããå ´åã¯ãæãããªãéã Chrome ãæ³å®ãã¦ãã¾ãã誤ããè£è¶³ã質åãª
å ¥ã£ãä¼ç¤¾ã¯Webãµã¼ãã¹ããã£ã¦ãããã¢ã¯ã»ã¹ã«ã¦ã³ã¿ã¼ã¨ãã¬ã³ã¿ã«æ²ç¤ºæ¿ã¿ãããªãããããããªããã£ããªæãã®ã¦ã§ãããä»ã§ãåç³ã¿ããã«æ®ã£ã¦ããã¨ãããããããteacupã¨ãããããªããã å½æã¯ãããããã¨ããã¦ããä¼ç¤¾ãASPï¼Application Service Provider)ã¨å¼ãã§ãã¦ãããã¡ã¯ASPäºæ¥ãã£ã¦ããã§ããã¨è¨ãã¨éããè¯ãã£ãã ååºä»£ããã£ã¦ããã®ããªãä½ãåºæ¥ãã®ãããã¡ã¯ãããªã«æè¡åããã¾ããã£ã¦ã®ãããéå¶ãã¦ããWebãµã¼ãã¹ã§è¡¨ç¾ãããããåæ¥è ãéã¾ã£ããããä¸é話ãã¦ãã風ã§ãèªåã¨ãã®ãµã¼ãã¹èªæ ¢ãã¾ãããã ããããªããããããããè² è·é«ãã¦ããã®åããµã¼ãã¼è½ã¡ã¦ãã¨ãããã¡ã®ã¦ã¼ã¶ã¼ã¯ä¸å¦çãå¤ããã§ãã¨ããä»ã§è¨ããã¦ã³ãã®åãåãã ãããã©ããæµè¡ã£ã¦ãªãããããæå³ã®ããããªãã¨ãã§ç«¶ã£ã¦ããã ãã ããã°ã©ãçã«ã¯A
表é¡ã®éãããæ¥ããããéãã§ã¯ããã¾ããã人çã§ã¯ããã¦è¦å¯ï¼ç¥å¥å·çè¦ï¼ï¼ã®ãä¸è©±ã«ãªãéã³ã¨ãªãã¾ããã 罪ç¶ã¨ãã¦ã¯ãä¸æ£æ令é»ç£çè¨é² åå¾ã»ä¿ç®¡ç½ªããé称ã¦ã¤ã«ã¹ç½ªã¨ã®ãã¨ã§ãã¾ãã«é天ã®é¹éã®æãã§ãã 以ä¸ã§ã¯ãã®åº¦èµ·ãã£ããã¨ãå¯è½ãªç¯å²ã§ããã®ã¾ã¾å ±æã§ããã°ã¨æãã¾ãã ãã®è¨äºã®ç®çã¾ãããã®è¨äºãå ¬éããç®çã¯ãä»ã®ã¯ãªã¨ã¤ã¿ã¼ã®äººã«åãçµé¨ããã¦æ¬²ãããªããã¨ããä¸ç¹ã«å°½ãã¾ãã æåå³åã§ã¯ããã¾ãããç§ã¯ããã¾ã§å¤ãã®å°æ¬ããã¯ãªã¨ã¤ã¿ã¼ã®æ¹ã ã¨åãããã«ãè¯ãã¯ãªã¨ã¤ã¿ã¼ã§ããããã¨è å¿ããã§ããããããã®åªåããã¦ããã¤ããã§ãã ä»åã®ä»¶ã«é¢ãã¦ã決ãã¦ç§å©ç§æ¬²ã®ããã§ã¯ãªããããã¾ã§ã¦ã¼ã¶ã¼ã®ããã«ã§ãããã¨ããã¨æ¨¡ç´¢ããçµæã§ããã ããããã®ãããªå½¢ã§åãæ²æ±°ããããã¨ã¨ãªããæ®å¿µã¨ããä»ããã¾ããã 忸æ©ããæãã§ã¯ããã¾ããããã®ä»¶ããä½ãã
ãå¤æ´å±¥æ´ 2018å¹´2æ15æ¥ãå½åã®è¨äºã¿ã¤ãã«ã¯ããã¾ãªãHTTPSåãªã®ãï¼ æè¡è ãç¥ã£ã¦ããããSEOãããã£ã¨å¤§åãªã㨠â TLSã®æ´å²ã¨æè¡èæ¯ãã§ããããç¾è¡ã®ãã®ã«å¤æ´ãã¾ãããç¾å¨Googleã§ã¯Webãµã¤ãã®HTTPS対å¿ã¨æ¤ç´¢çµæã®é¢ä¿ã強調ãã¦ããããæ¬è¨äºã®è¶£æ¨ã®ä¸ã¤ã«ãæ¬æ¥ã¯ç¬ç«ããåé¡ã§ããSEOã¨HTTPSåãé¢é£ä»ããã¨ããæ ¹å¼·ã誤解ã解ããã¨ãããã¾ãããå½åã®ã¿ã¤ãã«ã§ã¯ããã£ã¦SEOã¨HTTPSãé¢é£ä»ãã¦èªã¾ãããããããããã¾ãåæ§ã®ææãããã ãããã¨ããå¤æ´ãããã¾ããã HTTPã¨HTTPSã¯ãå ±ã«TCPéä¿¡ä¸ã§åä½ãã¾ãããããã£ã¦ãããããTCPãã³ãã·ã§ã¤ã¯ã§éä¿¡ãéå§ãã¾ãã HTTPéä¿¡ã®å ´åã«ã¯ããã®TCPãã³ãã·ã§ã¤ã¯ç´å¾ã«ãHTTPãªã¯ã¨ã¹ãã¨ã¬ã¹ãã³ã¹ã®ããåããå§ã¾ãã¾ãããã®HTTPã®ããåãã¯å¹³æéä¿¡ã§ãããé
çããããã©ã¤ãã¼ãã§ä½ãéçºãã¦ãã¾ããï¼ãä½ãä½ããããã¨ããæ°æã¡ã¯ãããã®ã®ããã¾ã²ã¨ã¤ä½ããå§ãããããã®ãåããããåããªãã¾ã¾ã®äººãå¤ãã¨æãã¾ãã ãããªçããã®ããã«ãä»äºä»¥å¤ã«ãä¼æ¥ã«å人ã§æ°è»½ã«ä½ããä½ã£ã¦ã¿ããï¼ ã¨ããä¼ç»ãã¹ã¿ã¼ããã¾ããä»åã¯ãOSãã¤ã³ã¹ãã¼ã«ããã¦ã®ã¯ã©ã¦ããµã¼ãããããã°ã©ã ãå®è¡ã§ããWebãµã¼ãã¨ãã¦åããã¾ã§ã®æé ã解説ãã¾ãã å人ã§éçºããã¨ãã®å®è¡ç°å¢ãé¸ã¶ å人éçºãªãã°ã¯ã©ã¦ãããããã IaaSï¼Infrastructure as a Serviceï¼ PaaSï¼Platform as a Serviceï¼ SaaSï¼Software as a Serviceï¼ ã¯ã©ã¦ããµã¼ãã¹ã®é¸ã³æ¹ IaaSã®ãµã¼ãã¹ãé¸ãã§ããµã¼ããæ§ç¯ããã ãµã¼ãã¹ãé¸ã¶éã«ãã§ãã¯ããããã¤ã³ã IaaSãæä¾ãã¦ãããµã¼ãã¹ã®ä¾ ã¢ã«ã¦ã³
Codaã¯çµå£²ãã¾ããã ãµãã¼ãããã©ã°ã¤ã³ã®ãå ¥æãªã©ã¯ã©ã¤ãã©ãªããåç §ãã ããã ä»ç¤¾è£½ã®Codaã¯ãã¡ãã ...ã¾ã£ããæ°ãããMacã«ãã¤ãã£ããªã¦ã§ãã³ã¼ãã¨ãã£ã¿ã®èªçã§ã!
Shibuya.XSS ãã¯ãã«ã«ãã¼ã¯#1 : ATND ã«åå ãã¦ããã®ã§ããã®æã®ã¡ã¢ã Shibuya.XSS Shibuya.XSSã¾ã¨ã â Togetter DOM Based XSSã®å¾åã¨å¯¾ç â mala Shibuya.XSSã§çºè¡¨ãã¦ãã¾ãã â éå©0ç¡å©æ¯ãã£ãã·ã³ã° â ãã£ãã·ã³ã°ã§ãã¾ã â subtech æ©æ¢°çãªã¹ãã£ã³ã§è¦ã¤ãã¥ããXSS location.hashçµç±ã§çºç«ãå¤ãã ãµã¼ãå´ã«ã¢ã¯ã»ã¹ãã°ãæ®ãã¥ãã ãã¼ã³ã³ã§location.hashãè¨é²ããäºãå¯è½ã ãã©ãå®è¡é åºã§æ½°ãããäºããã location.hashã§ã®åé¡ XHR2 ã©ããªæã«è¦ã¤ãã«ãã ãã©ã¡ã¼ã¿ã¼ããã¼ã¹ãã¦å©ç¨ãã¦ãå ´å ã½ã¼ã¹ãèªã¾ãªãã¨è¦ã¤ãã«ããã é£èªåããã¦ãã¨ããã©ã ã¬ã¬ã·ã¼ã³ã¼ã ã©ãããã®ãããã®ã ããã ããªãã¼ã·ã§ã³? ããªãã¼ã·ã§ã³
- WinMirror - ä»»æã®ã¢ããªã±ã¼ã·ã§ã³ã®ã¦ã£ã³ãã¦ããã¹ã¯ãããããã©ã¼ãªã³ã°ãã¦è¡¨ç¤ºã§ãã¾ãã 解説: ãªã³ãµã¤ãã§ã®ç»å£ã§è¿ãã®ã¢ãã¿ã¼ããªãã¦ããã¢ãããããããããã¼ã«ãä½ã£ã - SSTã¨ã³ã¸ãã¢ããã° - é³å£°åå¹æ©è½ä»ãã®Webã«ã¡ã© - Web Audio APIã使ã£ã¦ãã¤ã¯å ¥åãã¹ãã¼ã«ã¼ããåºå - LTã¿ã¤ãã¼ - JavaScriptã»ãã¥ãªãã£ã®åºç¤ç¥èï¼é£è¼ï½gihyo.jp ⦠æè¡è©è«ç¤¾ - HTML5æ代ã®ãæ°ããã»ãã¥ãªãã£ã»ã¨ãã±ãããï¼ @IT - æç§æ¸ã«è¼ããªãWebã¢ããªã±ã¼ã·ã§ã³ã»ãã¥ãªãã£ ï¼ ï¼ IT - é£è¼ï¼æ¬å½ã¯æãæåã³ã¼ãã®è©±ï½gihyo.jp ⦠æè¡è©è«ç¤¾ - JSF*ck - encode JavaScript with only 6 letters - []()!+ (broken) JSF*ck demo
ââ ãã ä»xmlã©ã¤ãã©ãª(JSTLã¿ã°)ä½æä¸â â sqlã©ã¤ãã©ãª(JSTLã¿ã°)ã追å ãã¾ããã coreã©ã¤ãã©ãª(JSTLã¿ã°)ã追å ãã¾ããã logicã©ã¤ãã©ãªï¼Strutsã¿ã°ï¼ã追å ãã¾ããã htmlã©ã¤ãã©ãªï¼Strutsã¿ã°ï¼ã追å ãã¾ããã beanã©ã¤ãã©ãªï¼Strutsã¿ã°ï¼ã追å ãã¾ããã ã¢ã¯ã·ã§ã³ã¿ã°ï¼JSPã¿ã°ï¼ã追å ãã¾ããã
æ¬è¨äºã¯éçºè ã対象ã¨ããJavaãã¼ã¹ã®Webã¢ããªã±ã¼ã·ã§ã³ã®å ¥éæ¸ã§ãã å 容ã«ã¤ãã¦ããæè¦ã»ãè¦æãããã°ãSDASã«é¢ãããæè¦ã»ãè¦æãã©ã¼ã ãããé¡ããã¾ãã å 容ã®æ¹è¯ã®ãããã質åãæè¿ãã¾ãã ã©ããªåºæ¬çãªãã¨ã§ãé æ ®ããã«ã©ããã ç®æ¬¡
ãªãªã¼ã¹ãé害æ å ±ãªã©ã®ãµã¼ãã¹ã®ãç¥ãã
ææ°ã®äººæ°ã¨ã³ããªã¼ã®é ä¿¡
å¦çãå®è¡ä¸ã§ã
j次ã®ããã¯ãã¼ã¯
kåã®ããã¯ãã¼ã¯
lãã¨ã§èªã
eã³ã¡ã³ãä¸è¦§ãéã
oãã¼ã¸ãéã
{{#tags}}- {{label}}
{{/tags}}