ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Security threats Toolkit

Berners-Lee: Web security a 'never-ending battle'

Tom Espiner ZDNet.co.uk

Published: 21 Sep 2007 14:37 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

The man credited with invention of the world wide web, Sir Tim Berners-Lee, has warned that web security is a "never-ending battle".

Speaking at a lecture hosted by the Institution of Engineering and Technology in London on Thursday, Berners-Lee said that, while he was against web censorship per se, both technological and educational means should be employed to tackle internet security issues.

"A lot of security work is going on [on the web], but security is a never-ending battle," said Berners-Lee. "The web is used by humanity, and humanity has a dark and a light side. I'm an optimist — I think the light side wins. The web is supposed to be a blank sheet of paper, and you can write dark things on that paper as well as light. If you tried to control the web, you would end up with engineers deciding what the truth is, which is worse. But, if we see nasty things happening, we should try and tweak [the web]. If you look at any protocol anywhere, there are technical and social restrictions."

Berners-Lee said that web technology had been originally designed for "a friendly academic environment". Numerous technologies including email and wikis had been conceived in a positive light, and are being used to the good by large numbers of people. But he said that the negative side of technology use should be addressed.

"We made the email system, and in turn it's used by a huge number of people. The person who designed wikis led to Wikipedia [being founded]. Email and the web allow the mass sending of information, but were designed for a friendly academic environment. You have to look at the result: there are huge volumes of spam, phishing attacks — that's bad, and we have to fix that — that is the cycle of websites," said Berners-Lee.

Read this

Feature
Q&A: Be alert to booby-trapped web pages

Trend Micro chief technology officer Raimund Genes warns that online life is about to get much hairier...

Read more +

Phishing attacks have the potential to damage consumer confidence in the web, because consumers are "now not sure if it's [their] bank". Berners-Lee called for a mixture of technological and educational measures to mitigate web-security issues. Technical means should be employed to mitigate current Web 2.0 threats, such as cross-site scripting attacks, he said, while good security practice should be encouraged among end users.

Cross-site scripting attacks exploit JavaScript flaws to inject malicious code into a web page during a user's browser session. "Cross-site scripting attacks are a huge problem," said Berners-Lee. "Other times it's just straightforward education. Don't train users to type their passwords into websites in the clear. Banks are training [US users] to give their social security number. There are some security flaws they haven't thought they're training people to do."

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with Dell

Did you find this article useful?
6 out of 6 people found this useful


Full Talkback thread

0 comments


Company/Topic Alerts

Create a new alert from the list below:








Related Jobs

Operations Support Analyst Unix, PL/SQL, Scripting

Operations Support Analyst Unix, PL/SQL, Scripting Reports to AMS Support Manager Type of position: Perm Hours : 37.5 / week GENERAL DESCRIPTION ...

Web Applications Developer

Excellent scripting skills (ASP, You will have an excellent knowledge and understanding of SQL Server 2005, relational database design and ...

Project Officer

Trusts websites with the support of the Communications team. This post has 3 key features: - The post-holder holds a portfolio of academies, for whom ...

Featured Talkback

What was achieved there is recognised to be of fundamental importance to both winning the war (Churchill visited to say 'thank you' to them) and the development of the computer. Maybe Bill Gates doesn't want to support this museum because it underlines where electronic computing started i.e. here, not the U.S.

By: 1000103773

Read full story:
Bletchley Park faces bleak future

Sentry Posts Blog

The vPhone: Why Visa Should Go Mobile

The vPhone: Why Visa Should Go Mobile Author: Eric Everson, Founder MyMobiSafe.com With all of the success of Apple’s iPhone, there is a growing case to support a company like Visa... More

Post a comment

The Google Apple Merger: Fantasy or Fu...

The Google Apple Merger: Fantasy or Future? Author: Eric Everson, Founder MyMobiSafe.com Market research suggests that Microsoft controls upwards of 90% of the respective computer-based... More

1 comment

Trades Unions against ID Cards

The Trades Union Congress (TUC) has backed up airport workers protesting against ID cards, the Financial Times reports. In a letter to Home Secretary Jacqui Smith, the TUC said it... More

Post a comment