Cool overview of XSS attacks

Commonly Asked Cross-Site Scripting Questions | SecGuru

There's a good guide to how Cross site Scripting attacks occur and some of the ways to defend against them over at secguru.

One thing I'd add, is that if you're working in a Microsoft world, using ASP.NET is a very good idea as the default config. seems to make XSS a lot harder to execute (can't remember the exact settings at the moment, ust remembering my frustration last time I had to test an asp.net site...)

About this Entry

This page contains a single entry by Rory2 published on September 5, 2005 9:58 AM.

Cross Site Scripting Vulnerability scanner was the previous entry in this blog.

Cool List of firefox plugins for pentesters is the next entry in this blog.

Find recent content on the main index or look in the archives to find all content.

Pages

Powered by Movable Type 4.37

About this Entry

This page contains a single entry by Rory2 published on September 5, 2005 9:58 AM.

Cross Site Scripting Vulnerability scanner was the previous entry in this blog.

Cool List of firefox plugins for pentesters is the next entry in this blog.

Find recent content on the main index or look in the archives to find all content.