« Feb 21st Forrester / V.i. Labs Webinar: Best Practices for Protecting .NET Applications | Main | China's anti-piracy efforts »

February 01, 2008

Hardening Active X Controls Used By Facebook and MySpace

As evident by vulnerability discovered in Active X controls used by FaceBook and MySpace (Gregg Keizersee's Computerworld article), Active X base applications are in general, great candidates for application hardening and protection approaches. In my own experience with gaming providers who use the same technology to enable on-line gaming, the application code is cached and executed on the desktop which makes it a prime target for reverse engineering and malicious tampering. Hardening the code and enabling real time tampering checks with a backend server would offer strong deterant against tampering of these components as well as discovery of the exploit itself.

-Vic

Comments

Post a comment

Comments are moderated, and will not appear on this weblog until the author has approved them.