XSS (Cross Site Scripting) Prevention Cheat Sheet
january 2009 by al3x
"a simple positive model for preventing XSS using output escaping/encoding properly"
cheatsheet
javascript
xss
infosec
web
january 2009 by al3x
XSS | Musings
march 2007 by al3x
a Ruby implementation of the sanitization approach taken in the Universal Feed Parser. to be incorporated into acts_as_sanitized ASAP.
ruby
infosec
xss
march 2007 by al3x
Same-Origin Policy Part 1: Why we’re stuck with things like XSS and XSRF/CSRF
february 2007 by al3x
hella thorough look at a bunch of webappsec issues
webapp
infosec
xss
csrf
ajax
february 2007 by al3x
sla.ckers.org web application security forum
september 2006 by al3x
brutal vulnerability disclosures. good work.
infosec
webapp
xss
vulnerability
research
september 2006 by al3x
XSS (Cross Site Scripting) Cheat Sheet
september 2006 by al3x
so... many.. encoding bugs!
security
xss
javascript
reference
september 2006 by al3x
Copy this bookmark: