Showing posts from December, 2007

[Book-Review] XSS Attacks: Cross Site Scripting Exploits and Defense

Recommended for those who would like to learn how evil and dangerous a Cross Site Scripting (XSS) Flaw is. The impact of this flaw has been underestimated because security researchers' JavaScript Alert Message Box proof-of-concept makes every newbie confused about XSS.