Professional Webmasters Community
Would you like to react to this message? Create an account in a few clicks or log in to continue.

Abusing Internet Explorer 8's XSS Filters

Go down

Abusing Internet Explorer 8's XSS Filters Empty Abusing Internet Explorer 8's XSS Filters

Post  andry Wed Nov 10, 2010 3:11 am

Internet Explorer 8 introduced a new type of defense against Cross-site Scripting (XSS) attacks.The idea was to build filters into the browser which can detect and prevent certain types of malicious XSS attacks. Most filter based XSS approaches are implemented on the server side inside a web application or as part of a Web Application Firewall.This made the Microsoft approach a somewhat novel approach but one which other browser vendors have begun to follow. Although the filters do not protect against all types of XSS attacks, nor do they attempt to, they do attempt to raise the bar for a would-be attacker by making certain commonly attack scenarios non-exploitable.

Download PDF
andry
andry
Moderator
Moderator

Posts : 467
Join date : 2010-05-07

Back to top Go down

Back to top

- Similar topics

 
Permissions in this forum:
You cannot reply to topics in this forum