Evan Martin (evan) wrote in evan_tech,
Evan Martin

xss cheat sheet

Via nikolasco, XSS cheat sheet. High signal to noise ratio, with snippets that make me wince like "IMG SRC=&#0000106&#000009", and Brad's favorite, "someattr="jav ascript:alert('XSS');"".

Lots of stuff on there I hadn't seen before. I'm glad I don't have to deal with this stuff.
Tags: javascript

