programming mistake

Hacker Halted 2010

Bypassing MSIE8 XSS Filter By Design.

181
vote

When MSIE8 beta 2 launched a few days ago, I took it for a little spin to see if it puts up what it says it does. I'm actually quite happy and surprised with the XSS filter, but one thing is quite concerning in my opinion. I talked with David Ross from Microsoft about it over the weekend and explained my thoughts on slashes being put in vectors to subvert the XSS filter.  read more »

Bypassing MSIE8 XSS Filter By Design.

535
vote

When MSIE8 beta 2 launched a few days ago, I took it for a little spin to see if it puts up what it says it does. I'm actually quite happy and surprised with the XSS filter, but one thing is quite concerning in my opinion. I talked with David Ross from Microsoft about it over the weekend and explained my thoughts on slashes being put in vectors to subvert the XSS filter.  read more »

Syndicate content