Ryze - Business Networking Get a Coderbuddy developer now
www.coderbuddy.com

"I Highly Recommend Them" - Magnitude.io CEO; US timezone; affordable rates; Silicon Valley leadership
Get your software built!
Buy Ethereum and Bitcoin
Get started with Cryptocurrency investing
Home Invite Friends Networks Friends classifieds
Home

Apply for Membership

About Ryze


Small Business Think Tank [This Network is not currently active and cannot accept new posts] | | Topics
Dorvak says SEO URLs suck.Views: 204
Mar 03, 2009 1:04 am re: re: re: re: re: re: re: re: re: re: re: Dorvak says SEO URLs suck.

Reg Charie
An interesting article popped up today regarding rewriting URLs for security reasons.
While it looks like a great idea to stop script insertions, I wonder how the site's indexing would fare?

>> * Attacks like cross-site scripting (XSS), cross-site request forgery (XSRF), and open-redirect phishing are routinely propagated through malicious hyperlinks sent in e-mail messages. (If you’re unfamiliar with these attacks, I recommend reading about them at the Open Web Application Security Project (OWASP) Web.) We could mitigate much of the risk of these vulnerabilities by frequently changing our URLs — not once every 200 years but once every 10 minutes. Attackers would no longer be able to exploit application vulnerabilities by mass e-mailing poisoned hyperlinks because the links would be broken and invalid by the time the messages reached their intended victims.
http://blogs.zdnet.com/security/?p=2728&tag=nl.e550



Reg - NEW DEMO!! Turn photos into paintings http://FantasticMachines.com
All You Need is Dotcom-Productions and a Dream. http://dotcom-productions.com
0Grief http://0grief.com/special_hosting_accounts_for_my_ryze_friends.htm
CRELoaded websites http://RegCharie.com - SBTT http://thinktank-network.ryze.com

Private Reply to Reg Charie (new win)





Ryze Admin - Support   |   About Ryze



Ryze Android preview app

Testing Gets Real: blog on A/B testing, building businesses with feedback loops, by Adrian Scott

© Ryze Limited. Ryze is a trademark of Ryze Limited.  Terms of Service, including the Privacy Policy