Zoomorama Developers' Blog

The Art of Zooming

To content | To menu | To search

November 2009

dmp@roomba:~$ sudo

Smart phones are so 2008, leave that to kids! True geeks don't play no more with such useless pieces of hardware. That is what grown-ups do with their Christmas stuff. Shad, come on! I know you can no...

Continue reading

CVE-2009-4074

"Related to the details of output encoding". Encoding? Really? Neither Maone nor the Register mention encoding IIRC, and they are the only sources mentioned....

Continue reading

Teletubbies vs.

Once in a while, there is something insightful in the Register feed......

Continue reading

CirruxCache:

While shad already wrote a post presenting CirruxCache ideas, then announced its release as open-source, I thought I would shoot as well (more concepts, less technicalities :-)), in order to give to...

Continue reading

IE8 XSS Filter flaw?

It seems that IE8 XSS Filter has a bug making otherwise safe sites vulnerable to XSS (if they don't opt-out the feature). While the Register post is less than informative, this is reported as well by...

Continue reading

7 classic

Web applications security is a tricky matter, not only because of the inherent complexity and variety of the web-platform itself, but also because of the number of possible interactions between...

Continue reading

Why is Flash so bad?

Well, maybe you weren't aware, but Flash is bad. Actually, it's worth than that, it's evil. Pure, unaltered, total evil. :-) Indeed, it's so totally ultimately evil that you can't even spell the name...

Continue reading

IE8 XSS Protection,

Paul twitted a former entry of this blog about the IE8 XSS filter, subsequently attracting reactions on this otherwise very quiet blog :-). As the post in question was a typical trollish rant of me,...

Continue reading