Skip navigation.

Random Accesses

Dispatches from the bleeding edge

Safer than ActiveX: a look at Google's Native Client plugin

, , , ,

Google has released a new experimental browser plugin that allows web applications to securely run native code on the underlying platform. The plugin, which is called Native Client, is distributed under the open source BSD license and is designed to work with all major platforms and browsers.

Allowing web applications to run native code has traditionally posed significant security risks. Microsoft's COM-based ActiveX technology, which aimed to provide developers with similar capabilities, is widely viewed as one of the most egregious security failings of the Windows operating system and it has become a frequent attack vector for malicious code.

Google believes that its security model has the potential to be far more robust and effective than the code-signing system of trust used by ActiveX. Google's engineers explain the differences between the Native Client and ActiveX security models in a paper about the project:

Source: http://arstechnica.com/news.ars/post/20081209-safer-than-activex-a-look-at-googles-native-client-plugin.html

LG Develops World’s First LTE Handset Modem ChipMind-controlled robotic limbs become the ants-pants

Write a comment

You must be logged in to write a comment. If you're not a registered member, please sign up.

December 2009
M T W T F S S
November 2009January 2010
1 2 3 4 5 6
7 8 9 10 11 12 13
14 15 16 17 18 19 20
21 22 23 24 25 26 27
28 29 30 31