Simon Willison’s Weblog

Subscribe

Items tagged xss in 2006

Filters: Year: 2006 × xss × Sorted by date


Why is XSS so common? Because dev tools don’t escape things by default. # 2nd August 2006, 8:57 pm

How the myspace SWF hack worked. If Flash is a vector for XSS, is this the end of Flash badges? # 17th July 2006, 6:04 pm

Don’t serve JSON as text/html. Another sneaky XSS trick. # 5th July 2006, 11:46 pm

Mozilla causing XSS in Livejournal. Their recent worm attack was caused by the -moz-binding CSS property. # 22nd January 2006, 9:37 pm

Xanga Hit By Script Worm (in December) (via) Description of an XSS worm that hit Xanga last month. # 21st January 2006, 8:47 pm

Types

Years

Months

Tags