Re: Gzipped output

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 




Let us look at XSS now.  http://sla.ckers.org/forum/list.php?2  Looks
like there are quite a few of those too.  If Google/Yahoo can't stop
this stuff how are us mere mortals supposed to?
In my experience, the bigger the organisation, the more mere mortals. Also, a small team has a much better of chance of getting things right
than a big team
What needs to happen, IMO, is for the browser manufacturers to create a way for users and website programmers to disable scripting in the web page body on a per site or per page basis. Why not be able to supply a meta tag that will only let scripting be attached in the head portion of the page and only from a file. Perfect use for Javascript behaviors to attach code to what's in the page body.

That'd stop a lot of XSS issues and it'd force developers to write better code.

--
Michael McGlothlin
Southwest Plumbing Supply

<<attachment: smime.p7s>>


[Index of Archives]     [PHP Home]     [Apache Users]     [PHP on Windows]     [Kernel Newbies]     [PHP Install]     [PHP Classes]     [Pear]     [Postgresql]     [Postgresql PHP]     [PHP on Windows]     [PHP Database Programming]     [PHP SOAP]

  Powered by Linux