websecurity

This commit is contained in:
bt3gl 2014-11-20 10:08:32 -05:00
parent c8705de960
commit e36532ca5e

View file

@ -162,7 +162,7 @@ Now, there is a further step that can make this address even more obscure. You c
#### Great @
-Everything between "http://" and "@" is completely irrelevant
- Everything between "http://" and "@" is completely irrelevant
```
http://doesn'tmatter@www.google.org
@ -260,8 +260,8 @@ Set-Cookie: SID=472ndsw;expires=DATE;path=/;domain=SITE,HttpOnly
-----
## Tools
- [Burp Suite]
- [FireBug] in Firefox
- Burp Suite
- FireBug] in Firefox
----
@ -390,6 +390,7 @@ $string = "<script>alert('XSS');</script>";
$string = mb_convert_encoding($string, 'UTF-7');
echo htmlentities($string);
?>
```
### XSS Defenses