Volutions - ID | News | Gadget | Tutorial | Freeware | Template | Etc.: Abusing Internet Explorer 8's XSS Filters

Abusing Internet Explorer 8's XSS Filters

Internet Explorer 8 introduced a new type of defense against Cross-site Scripting (XSS) attacks.The idea was to build filters into the browser which can detect and prevent certain types of malicious XSS attacks. Most filter based XSS approaches are implemented on the server side inside a web application or as part of a Web Application Firewall.This made the Microsoft approach a somewhat novel approach but one which other browser vendors have begun to follow. Although the filters do not protect against all types of XSS attacks, nor do they attempt to, they do attempt to raise the bar for a would-be attacker by making certain commonly attack scenarios non-exploitable.

Download PDF

Enter your email address:

Related Post



  • Digg
  • del.icio.us
  • Facebook
  • Google
  • StumbleUpon
  • Technorati
  • TwitThis

No response to “Abusing Internet Explorer 8's XSS Filters”

Leave a reply

 
Support By Blogger