RSS is an abbreviation referring to "Really Simple Syndication" or "Rich site Summary." It is basically a way of distributing updates about website content through XML formats. The feeds may include photos or a site most recent posting or even blogs.
These feeds will benefit you, whether you are a reader or a publisher. They provide you with national or local news, music, weather, your favorite blogger and blogs or even games. You can enjoy these benefits among others. However, there are some risks you will have to consider when adopting this feeds. These risks can be both from the feeds as well as the readers.
Hackers
As RSS feeds gain momentum, hackers are taking notice. The development capability of their specification is mostly where vulnerability lies. Hackers are able to gain access, especially when you use enclosure tags to link file types such as word documents and images. MP3 files, executables and power point presentations are also vulnerable. Publishers also suffer from hackers, especially when sending emails with attachments. That's not all; hackers can also access most of your personal and critical data right from your PC just with a simple click.
Distribution of infected files
The fact that these feed are able to distribute files raises security concerns about the files. By opening myriad doors to syndication standard users, infected files are sent. Viruses, Malware and spy applications come along with the files. The motive is usually to leave your PC infected to hence render it functionless. This has, however, not caused any worries among many users, since they are able to choose the content they want to receive.
Injection of other scripts
This is one of the major risks that halt the feeds. Varieties of scripts are injected into the feeds thus they become integrated into the normal elements of the feeds. You will not be able to differentiate the scripts from other elements since the process is performed to make them look similar. The injections can be HTML tag inclusion or HTML entity exploit.
Local zone security
This also poses a great threat among RSS aggregators and readers. It comes about when an infected file with ActiveX is configured to either write or read files to the hard disc of your PC. This file is then readable or sent to a specified place once you connect to the internet.
Confusion of identity of source
When these feeds don't display the actual name or URL of a website, a problem arises among aggregators. The user will not be able to identify the exact source of the feeds. This will in turn render him exposed to some other security threats.
The discouraging news about all these risks of using RSS feeds can, however, is avoided by using it in a safe manner. You can opt to;
- Use a reader who removes the entities of HTML prior to displaying the feeds.
- Arm your computer with antivirus and antispyware to prevent it from being infected.
- Use the reader who strips the various tags like frame set, embed, scripts, Meta and link among others.
No comments:
Post a Comment
Your Comment will be visible after approval. Post Free classified ads at www.pkbazaar.com to increase your traffic