|
|||||||||||
|
Re: Anti XSS AJAX
From: Ronald Chmara <ron(at)Opus1.COM>
Date: Sat Jul 28 2007 - 02:39:22 EDT On Jul 26, 2007, at 2:28 AM, Fady Anwar wrote: > A white paper about how to counter attack XSS attacks using AJAX Failed assumptions = Flawed solutions. Signing <script> tags? Ow. LOL. Ow.
See:
While you're there, learn how to forge GET/POST requests. -Bop Received on Sat Jul 28 13:00:23 2007 This archive was generated by hypermail 2.1.8 : Sun Oct 28 2007 - 06:10:23 EDT |
||||||||||
|
|||||||||||