Dispatches From The Internets



UK researcher says one line of code caused Ticketmaster breach

Third party code, people… third party code.

He pointed out that while Inbenta had provided Ticketmaster a customised JavaScript one-liner, the ticketing company had placed this chatbot code on its payment processing website without informing Inbenta it had done so. “This means that Inbenta’s webserver was placed in the middle of all Ticketmaster credit card transactions, with the ability to execute JavaScript code in customer browsers,” Beaumont said.

Sigh.








Going Offline

As you’ve probably gathered if you’ve been following my work for the last few years, I’m super-jazzed about Progressive Web Apps. I think they have the potential to improve user experience, performance, access, and so much more for so many people. So I was stoked when Jeremy Keith asked me to write the foreword for his latest book, Going Offline, which tackles the complex topic of Service Workers with aplomb. With his permission (and A Book Apart’s), I’m reprinting the foreword here.