|[January 24, 2013]
Real Studio Web Edition-Powered Website Thrives Against Major Hack Attempt; Proves Unprecedented Security Protection for Web Apps
AUSTIN, Texas --(Business Wire)--
Real Software, creator of award-winning cross-platform web and desktop
app development tools, prides itself on the revolutionary new visual way
to make web apps using Real Studio, but also has demonstrated high
security for web apps. Targeted attacks and data theft are changing web
security. According to this study
from HP's Application Security (News - Alert) Center, for every known web app, seven
out of ten times there is at least one SQL injection flaw that is just
waiting to be discovered by a hacker.
Bob Keeney, a longtime Real Studio developer, and CEO of BKeeney
Software, a consulting, training and custom software development
company, was recently victim to a website hack attempt. It unfortunately
brought down his entire website, except the section he had created as a
web application using Real Studio Web Edition.
Bob's website was using an older version of the popular CMS, Joomla.
When he first started offering Real Studio video training, he was
relying upon several Joomla components that would stop working if they
updated to a newer version. A little more than a year ago, Bob converted
the Real Studio training section of the website to a Real Studio web app.
"We were down for about 24 hours after the hack, as we had to spend some
time formatting new webpages, rearranging links and uploading it to get
the site back up and running," detailed Keeney. "We believe the hacker
was able to upload a PHP file through a flaw in Joomla, which executed a
variety of commands that rewrote many of the PHP files, so it could
execute arbitrary commands and reinfect itself again if we didn't
eradicate all of the infected files."
"Our main website would not load and it also took down our bug tracking
system, which alo uses PHP," continued Keeney. "Our Real Studio video
training app functioned perfectly, however. In fact, we even had several
people sign up for subscriptions and many were watching videos even
though the rest of the website was down."
"At Real Software, we take web security very seriously in the Real
Studio web application framework," commented Geoff Perlman, Real
Software Founder and CEO. "Because web apps are accessible to any number
of online users, the security of web apps is paramount."
"Most traditional web development languages are interpreted, meaning
your web app is a set of files on a server," continued Perlman. "If
someone gains access to that server, they gain access to your source
code. Real Studio compiles your web project to binary code so your
source code is not stored on the server. In order for someone to alter
your application they would have to be very familiar with x86 assembly
code and be willing to spend an extremely long time tracing through that
code. This is, at the least, an order of magnitude far more difficult
than hacking any other web technology source code."
The Open Web Application Security Project (OWASP) provides information
on web application security and recently posted a list of the top 10 web
application security issues. Though a few of these issues require the
developer to be more diligent, most cannot be used to hack into a web
application created with Real Studio.
SQL injection attacks and cross-site scripting remain the most common
forms of web app hack attempts. Real Studio provides developers with
prepared statement support for database access. This takes the values to
be used in a query and sends them separately to the database server so
that it can determine if the values are valid or contain SQL. Web
applications created with Real Studio can't be hacked with cross-site
scripting because all data sent to the browser is automatically escaped.
As a result, the user cannot inject HTML into a page. Also, because the
developer to accidentally create this security breach.
Using Real Studio to make web apps is truly unique as you do not need to
Java. Instead, Real Studio provides a completely visual, drag and drop
interface builder that saves hours of time compared to coding HTML and
CSS by hand. Its high-level, object-oriented language allows you to
focus on your application's logic using a single language.
BKeeney's website receives several thousand website visits per month. In
the year that the Web Edition training area has been running it has
served up over 3,100 hours of streaming video to about 800 Real Studio
About Real Studio Real Studio is a full-featured cross-platform
software development tool suited to creating a wide range of
applications, from utilities to enterprise-class applications. Real
Studio Personal Edition for Windows, Linux or Mac OS X is priced at $99
and is geared for hobbyists and students. Real Studio Professional
Edition, required for cross-platform compilation is $299. Real Studio
Enterprise Edition, made for full-time developers, is priced at $995 and
offers the ability to develop and deploy on Mac OS X, Windows, Linux,
and the web. Real Studio Web Edition, the fastest and easiest way to
create and deploy web applications, is available for $599.
About Real Software Real Software provides Real Studio, a
cross-platform web, desktop, and console development tool. Real Software
was founded in 1996 and is based in Austin, Texas. For more information
or call 866.825.2114.
[ InfoTech Spotlight's Homepage ]