[Hone Your Ninja Skill] Whitelist filter bypass ("URL")


In input validation, whitelisting approach is said to be better than blacklisting one.  Yet non-robust implementation in whitelisting  could also allow attacker to bypass your defense.


Popular posts from this blog

Bypassing referrer check with no script involved

Jumping out of Touch Screen Kiosks