Full Disclosure mailing list archives

Re: To XSS or not?


From: "Michael Simpson" <mikie.simpson () gmail com>
Date: Tue, 25 Jul 2006 11:42:31 +0100

On 7/25/06, Aaron Gray <angray () beeb net> wrote:

schnnip

Yes I do, but I think a spcialized list is in order for web vulnabilities.

>XSS are based on bad code practices .. some day the programmers will
>learn to not make such mistakes if we point them. if we ignore them ....
>well security is not based on ignorance.

Yes I need to learn about this area as I am doing a couple of PHP&MySQL
based web sites myself and would like a specialized list to ask Q's on.

Regards,

Aaron
/schnnip

what, like websecurity () webappsec org

mike

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Current thread: