HTML5-based mobile apps vulnerable to cross-site scripting attacks: Experts

Advertisement
By Indo Asian News Service | Updated: 10 April 2014 13:57 IST
As you are busy sending SMSs, reading emails or listening to music on your smart phone, do you realise that these simple things can get your smart phone infected with 'worms' that can not only steal personal information from your phone, but also infect your friends's phones?

Sound scary? You can blame a new technology that is behind the development of your favourite apps.

An emerging technology called HTML5-based app development has been rapidly gaining popularity in the mobile industry.

"When the adoption of this technology reaches certain threshold, worm attacks would become quite common unless we do something to stop it," a latest report from US-based IT research agency Gartner warned.

Advertisement

By 2016, 50 percent of the mobile apps will be using HTML5-based technologies.

Advertisement

"All major mobile systems would be affected, including Android, iOS, Blackberry, Windows Phone, etc., because they all support HTML5-based mobile apps," the report cautioned.

A notorious problem of the HTML5-based technology is that malicious code can be easily injected into the programme and get executed.

Advertisement

That is why the Cross-Site Scripting (XSS) attack is still one of the most common attacks in the Web.

"XSS attacks can only target at web applications through a single channel (Internet) but with the adoption of the same technology in mobile devices, we have found out that a similar type of attack can not only be launched against mobile apps," Gartner noted.

Advertisement

It can attack from Wi-Fi scanning, Bluetooth pairing, MP3 songs, MP4 videos, SMS messages, NFC tags and contact list.

"As long as an HTML5-based app displays information obtained from outside or from another app, it may be a potential victim," Gartned added.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Poco X8 Pro, Poco X8 Pro Max to Launch on This Date
  2. SanDisk Extreme Fit USB Type-C Flash Drive Launched in India at This Price
  3. NASA's Webb Telescope Confirms Asteroid 2024 YR4 Will Safely Pass the Moon in 2032
  1. NASA’s Webb Telescope Confirms Asteroid 2024 YR4 Will Safely Pass the Moon in 2032
  2. ChatGPT Adult Mode Delayed Again as OpenAI's 'Code Red' Reportedly Ends
  3. Lava Bold 2 5G India Launch Date Announced; Confirmed to Feature Under-Display Fingerprint Scanner
  4. Realme Note 80 Launched With 6,300mAh Battery, 6.74-Inch Display: Price, Specifications
  5. Anthropic’s Claude Finds 22 Vulnerabilities in Mozilla Firefox in Just Two Weeks
  6. Samsung Galaxy Smartphones Get Inactivity Restart Security Feature With Latest Update: Report
  7. Poco C85x 5G Key Specifications, Features Revealed a Day Ahead of Launch in India
  8. Rooster Now Available for Streaming Online: What You Need to Know About its Plot, Cast, and More
  9. Bhartha Mahasayulaku Wignyapthi OTT Release Date Reportedly Revealed: When and Where to Watch Ravi Teja’s Romantic Drama Online?
  10. Ghost Elephants Out on OTT: Know Where to Watch This Biographical Film Online
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.