Actually, I may have just found it. I think it was "Preventing Cross-site Scripting Attacks" at http://www.perl.com/pub/a/2002/02/20/css.html. In any case, that's good reading, and if anyone has any others to pass along, feel free. If I get enough, I'll publish a links page of them for future reference.
--- David T-G <[EMAIL PROTECTED]> wrote: > Actually, I'd appreciate such a thing, too. I just > went back through my > list mailbox looking for "cgi" and "security" in the > body and don't see > anything relating to a pointers page; the closet is > Ovid's response to > Fred Sahakian outlining some things to check when > looking at a CGI script. ===== "Now it's over, I'm dead, and I haven't done anything that I want; or, I'm still alive, and there's nothing I want to do." - They Might Be Giants, http://www.tmbg.com __________________________________________________ Do You Yahoo!? Yahoo! - Official partner of 2002 FIFA World Cup http://fifaworldcup.yahoo.com -- To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]