[HTML][HTML] Securing the tangled web

C Kern�- Communications of the ACM, 2014 - dl.acm.org
Communications of the ACM, 2014dl.acm.org
Securing the tangled web Page 1 38 COMMUNICATIONS OF THE ACM | SEPTEMBER 2014 |
VOL. 57 | NO. 9 practice DOI:10.1145/2643134 Article development led by queue.acm.org
Preventing script injection vulnerabilities through software design. BY CHRISTOPH KERN
SCRIPT INJECTION VULNERABILITIES are a bane of Web application development:
deceptively simple in cause and remedy, they are nevertheless surprisingly difficult to prevent
in large-scale Web development. Cross-site scripting (XSS)2,7,8 arises when insufficient data�…
Preventing script injection vulnerabilities through software design.
ACM Digital Library