[webkit-dev] Is the HTML5 application cache secure?

Alexey Proskuryakov ap at webkit.org
Fri Mar 13 12:53:42 PDT 2009

13.03.2009, в 22:09, dean.mikel написал(а):

> Would it be possible for a malicious native app to break into the  
> application cache, replacing some or all of my stored javascript or  
> gain access to my db? Thanks.

Both offline application cache and HTML5 SQL storage can be easily  
manipulated by native applications (of course, in a totally  
unsupported and fragile manner).

That said, a native application can also access the data in RAM as it  
is processed by Safari.

- WBR, Alexey Proskuryakov

More information about the webkit-dev mailing list