Cross-build injection attacks: Keeping an eye on Web applications' open source components

44
vote

Web application developers' growing dependence on open source components has opened the door for attackers to insert malicious code into applications even as they are being built. Michael Cobb explores the emerging attack method called cross-build injection and explains why application architects may need to change their ways.

Trackback URL for this post:

http://www.secgeeks.com/trackback/1293