Girish Juneja is director of SOA products at Intel. A co-founder of Sarvega, Inc., an SOA infrastructure company, he led the engineering and customer services organizations to develop Sarvega's industry leading core XML technology and XML networking products. Girish has held senior technology and management roles at Thomson Financial Services, Verizon, and MCI Telecommunications, with more than 15 years of experience in the technology industry in engineering, technology strategy, and management roles.
ULITZER AUTHOR SINCE:
December 15, 2004
In the enterprise IT environment today, modern middleware technologies make it easier to expose existing or new business applications as sets of services. However, with the mashup of cloud-based services and enterprise data center services, the visibility of how a service created today will be used in the future gets murkier. This is because it's difficult to predict how a service will be consumed over long periods of time and by which consumers, and further how the service may be integrated with other services or legacy applications to create new composite services. It also remains a challenge to architect services in such a way that service upgrades don't affect consumers unpredictably. The hype of "just create services with an Enterprise Service Bus (ESB) and you'll have the benefits of a service architecture such as lower costs and software reuse" typically lea... (more)
This session defines a new class of threats, XML Content Attacks, and differentiates these threats from more general Web services attacks and XML security-based attacks. These three related but distinct threat areas are explained. The session covers XML Content Attacks with regard to tree-based parsing exploits related to coercive parsing, node-depth attacks, and DOM. XML grammar validation exploits such as schema poisoning and lax-content models are discussed, and why traditional schema validation cannot ensure content-model consistency. Web services attacks like WSDL scanning a... (more)
4,770
out of 8,682
2
0
7,490
34
Terms of Use & Our Privacy Statement - About Newsfeeds / Videofeeds. Copyright ©1994-2009 SYS-CON Media.
All Rights Reserved. All marks are trademarks of SYS-CON Media.
Reproduction in whole or in part in any form or medium without express written permission of SYS-CON Media is prohibited.
You are viewing a mobilized version of this site...
View original page here
