HTML5-based mobile apps vulnerable to cross-site scripting attacks: Experts

Advertisement
By Indo Asian News Service | Updated: 10 April 2014 13:57 IST
As you are busy sending SMSs, reading emails or listening to music on your smart phone, do you realise that these simple things can get your smart phone infected with 'worms' that can not only steal personal information from your phone, but also infect your friends's phones?

Sound scary? You can blame a new technology that is behind the development of your favourite apps.

An emerging technology called HTML5-based app development has been rapidly gaining popularity in the mobile industry.

Advertisement

"When the adoption of this technology reaches certain threshold, worm attacks would become quite common unless we do something to stop it," a latest report from US-based IT research agency Gartner warned.

By 2016, 50 percent of the mobile apps will be using HTML5-based technologies.

Advertisement

"All major mobile systems would be affected, including Android, iOS, Blackberry, Windows Phone, etc., because they all support HTML5-based mobile apps," the report cautioned.

A notorious problem of the HTML5-based technology is that malicious code can be easily injected into the programme and get executed.

Advertisement

That is why the Cross-Site Scripting (XSS) attack is still one of the most common attacks in the Web.

"XSS attacks can only target at web applications through a single channel (Internet) but with the adoption of the same technology in mobile devices, we have found out that a similar type of attack can not only be launched against mobile apps," Gartner noted.

Advertisement

It can attack from Wi-Fi scanning, Bluetooth pairing, MP3 songs, MP4 videos, SMS messages, NFC tags and contact list.

"As long as an HTML5-based app displays information obtained from outside or from another app, it may be a potential victim," Gartned added.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Apple Unveils iOS 27 With Revamped Siri and Liquid Glass Improvements
  2. How to Watch WWDC 2026 Live on YouTube, Apple TV, and More
  3. Redmi Turbo 5 Confirmed to Launch in India With This Rear Camera Setup
  4. WWDC 2026: Apple Unveils Siri AI With Major Apple Intelligence Upgrades
  5. Vivo Y31s Launched in Malaysia With These Features
  6. Vivo X300 FE, iQOO 15R and More Discounted During Amazon Mega Deal Days Sale
  7. How Amazon Is Upgrading Echo for India's Premium Audio Era
  8. Vivo V70 Lite 5G Silently Launched in Select Markets With These Features
  1. WWDC 2026: Apple Unveils Siri AI With Major Apple Intelligence Upgrades
  2. Apple Unveils iOS 27 at WWDC 2026: Revamped Siri AI App, Faster Performance and Liquid Glass Upgrades
  3. WWDC 2026: Apple Launches macOS 27 Golden Gate With Major Siri Redesign and New AI Tools
  4. Astrophotographer Captures Giant Human-Shaped Solar Prominence
  5. Samsung Galaxy S26 FE Said to Ditch Matte Finish for a Glossy Rear Panel
  6. OnePlus N Series Tipped to Launch in India Next Month, Could Be More Affordable Than the OnePlus Nord CE 6 Lite
  7. Vivo Y31s 5G Launched With Snapdragon 4 Gen 2 Chip, 6,500mAh Battery: Price, Specifications
  8. Chinese Court Classifies Bitcoin as Property in Case Involving 107 BTC Theft
  9. Resident Evil Veronica Revealed at Summer Game Fest; Launch Set for 2027
  10. Karuppu OTT Release: When and Where to Watch Suriya’s Fantasy Action Drama Online
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.