Simon Willison’s Weblog

Subscribe

8th January 2007

If you are subject to an XSS, the same domain policy already ensures that you're f'd. An XSS attack is the "root" or "ring 0" attack of the web.

Alex Russell

This is a quotation collected by Simon Willison, posted on 8th January 2007.