<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: AJAX is Evil &#8211; Demo at Facebook</title>
	<atom:link href="http://www.disenchant.ch/blog/ajax-is-evil-demo-at-facebook/102/feed" rel="self" type="application/rss+xml" />
	<link>http://www.disenchant.ch/blog/ajax-is-evil-demo-at-facebook/102</link>
	<description>Blog of Sven Vetsch / Disenchant</description>
	<lastBuildDate>Tue, 02 Mar 2010 12:16:03 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.1</generator>
	<item>
		<title>By: TakingOff</title>
		<link>http://www.disenchant.ch/blog/ajax-is-evil-demo-at-facebook/102/comment-page-1#comment-166464</link>
		<dc:creator>TakingOff</dc:creator>
		<pubDate>Thu, 11 Dec 2008 22:08:19 +0000</pubDate>
		<guid isPermaLink="false">http://www.disenchant.ch/blog/ajax-is-evil-demo-at-facebook/102#comment-166464</guid>
		<description>Hmmm, I am tempted to try this.</description>
		<content:encoded><![CDATA[<p>Hmmm, I am tempted to try this.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: rubenriojas</title>
		<link>http://www.disenchant.ch/blog/ajax-is-evil-demo-at-facebook/102/comment-page-1#comment-161383</link>
		<dc:creator>rubenriojas</dc:creator>
		<pubDate>Wed, 12 Nov 2008 21:36:45 +0000</pubDate>
		<guid isPermaLink="false">http://www.disenchant.ch/blog/ajax-is-evil-demo-at-facebook/102#comment-161383</guid>
		<description>Good post.</description>
		<content:encoded><![CDATA[<p>Good post.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: travis</title>
		<link>http://www.disenchant.ch/blog/ajax-is-evil-demo-at-facebook/102/comment-page-1#comment-61551</link>
		<dc:creator>travis</dc:creator>
		<pubDate>Mon, 10 Dec 2007 12:48:39 +0000</pubDate>
		<guid isPermaLink="false">http://www.disenchant.ch/blog/ajax-is-evil-demo-at-facebook/102#comment-61551</guid>
		<description>Sven,

Nice article, I always enjoy reading your site.  Its funny how new implementations of code always introduces the same vulnerabilities.  Ajax just adds another complex layer that allows for worms to spread (e.g. Samy).  Phishing   XSS = Owned, I&#039;m not sure may people get that.  Keep up the good articles.

travis

http://travisaltman.com</description>
		<content:encoded><![CDATA[<p>Sven,</p>
<p>Nice article, I always enjoy reading your site.  Its funny how new implementations of code always introduces the same vulnerabilities.  Ajax just adds another complex layer that allows for worms to spread (e.g. Samy).  Phishing   XSS = Owned, I&#8217;m not sure may people get that.  Keep up the good articles.</p>
<p>travis</p>
<p><a href="http://travisaltman.com" rel="nofollow">http://travisaltman.com</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Daniel</title>
		<link>http://www.disenchant.ch/blog/ajax-is-evil-demo-at-facebook/102/comment-page-1#comment-60568</link>
		<dc:creator>Daniel</dc:creator>
		<pubDate>Thu, 06 Dec 2007 09:08:57 +0000</pubDate>
		<guid isPermaLink="false">http://www.disenchant.ch/blog/ajax-is-evil-demo-at-facebook/102#comment-60568</guid>
		<description>Nice article. I just wanted to say what John said. But the article is good because when I do AJAX stuff, I spend most time for testing and optimizing it, and that often results in having less time to check the incoming data on the server side.</description>
		<content:encoded><![CDATA[<p>Nice article. I just wanted to say what John said. But the article is good because when I do AJAX stuff, I spend most time for testing and optimizing it, and that often results in having less time to check the incoming data on the server side.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Disenchant</title>
		<link>http://www.disenchant.ch/blog/ajax-is-evil-demo-at-facebook/102/comment-page-1#comment-60353</link>
		<dc:creator>Disenchant</dc:creator>
		<pubDate>Wed, 05 Dec 2007 20:18:31 +0000</pubDate>
		<guid isPermaLink="false">http://www.disenchant.ch/blog/ajax-is-evil-demo-at-facebook/102#comment-60353</guid>
		<description>Hi John,
of course you&#039;re right, AJAX isn&#039;t evil itself because of Javascript and XML aren&#039;t (at least from my point of view) at all. The problem is that as I wrote in my blog posting, developers aren&#039;t aware of the threads which they have to deal with when they&#039;re using AJAX, even if the problems are the same as they already know about. So the answer to the question, if the technologies for AJAX (Javascript and XML) are evil is as I already wrote NO but the answer of the question if it&#039;s evil to use AJAX for everything just for make it good looking, even if the developers don&#039;t know the risks is YES. So I really have to say, that the title of my blog posting isn&#039;t perfect but I think people will get the point anyway :)</description>
		<content:encoded><![CDATA[<p>Hi John,<br />
of course you&#8217;re right, AJAX isn&#8217;t evil itself because of Javascript and XML aren&#8217;t (at least from my point of view) at all. The problem is that as I wrote in my blog posting, developers aren&#8217;t aware of the threads which they have to deal with when they&#8217;re using AJAX, even if the problems are the same as they already know about. So the answer to the question, if the technologies for AJAX (Javascript and XML) are evil is as I already wrote NO but the answer of the question if it&#8217;s evil to use AJAX for everything just for make it good looking, even if the developers don&#8217;t know the risks is YES. So I really have to say, that the title of my blog posting isn&#8217;t perfect but I think people will get the point anyway <img src='http://www.disenchant.ch/blog/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: John J.</title>
		<link>http://www.disenchant.ch/blog/ajax-is-evil-demo-at-facebook/102/comment-page-1#comment-60345</link>
		<dc:creator>John J.</dc:creator>
		<pubDate>Wed, 05 Dec 2007 19:24:30 +0000</pubDate>
		<guid isPermaLink="false">http://www.disenchant.ch/blog/ajax-is-evil-demo-at-facebook/102#comment-60345</guid>
		<description>Ajax, in and of itself, isn&#039;t evil, just as PHP isn&#039;t evil (yes, I know it has its own internal flaws, but most of the problems come from outside the core). Developers who ignore good security rules are evil. Developers need to realize that nothing that comes from outside their personal code is going to be clean; there is no security gained in obscurity.</description>
		<content:encoded><![CDATA[<p>Ajax, in and of itself, isn&#8217;t evil, just as PHP isn&#8217;t evil (yes, I know it has its own internal flaws, but most of the problems come from outside the core). Developers who ignore good security rules are evil. Developers need to realize that nothing that comes from outside their personal code is going to be clean; there is no security gained in obscurity.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
