Simon Willison’s Weblog

Items tagged xss, myspace

Filters: xss × myspace ×


MySpace: Too Much of a Good Thing? CSS customization really was just the result of forgetting to strip HTML. They “eventually” decided to filter out JavaScript(!) # 17th January 2007, 9:09 am

How the myspace SWF hack worked. If Flash is a vector for XSS, is this the end of Flash badges? # 17th July 2006, 6:04 pm

Types

Years

Tags