Mon 14 Aug 2006
I found a reference on Slashdot to this article going through a real xss attack on informit.com, showing how easy it is and the vulnerabilities that we as developers need to protect against.
It’s an interesting read, very easy to follow and pretty dangerous if not protected against.
I found a reference to Acunetix web vulnerability scanner, that supposedly tests a website automatically against this. But the pricing is pretty high and I’d rather want a good rules of thumbs list for developers.
October 11th, 2006 at 7:55 pm
[…] My blog has moved. You can read the post here: The dangers of Cross Site Scripting (XSS) […]