The use of rich Internet application (RIA) frameworks has sharply increased in the past year as more and more application development professionals embrace rich Internet development technologies like Ajax or Adobe Flash. But what does this mean for security and risk professionals? As these RIA platforms become ready for deployment, it's important to understand the potential security risks associated with RIAs, such as data leakage through a poorly configured mashup, as well as how to best mitigate a possible attack.