Update: Some details on how XSSDetect does dataflow analysis
Just a brief update, Hassan Khan one of the lead developers of XSSDetect and part of our ACE Engineering team has posted up some technical details on how XSSDetect uses data flow analysis to do its magic. You can read more about it here. Feel free to leave additional questions and I'm sure he'll follow up with more details in another post soon!
Comments
- Anonymous
October 23, 2007
PingBack from http://msdnrss.thecoderblogs.com/2007/10/24/update-some-details-on-how-xssdetect-does-dataflow-analysis/ - Anonymous
October 28, 2007
XSSDetect est un addin pour Visual Studio destiné à aider l'utilisateur à éliminer les problèmes d' XSS