![]() |
|
Spaces home Richard's footprint on ....PhotosProfileFriendsMore ![]() | ![]() |
|
Added a blog entry "Reread asp.net security model" An old long article from MSDN talked about asp.net security model. I reread it quickly due to current existing project need feeling it was worth reading for each asp.net programmer if you want to deep August 12 11:46 PM Added a blog entry "An xss sample" scenario: some forums without input well validated and guest message is allowed to input.
step:leave the following code snippet
<img src="http://google.com/images/logo.gif" onload="window.location='ht July 31 11:51 PM Added a blog entry "SET XACT_ABORT ON" Today, when I viewed Duwamish source code, I found this sqlserver option. I remembered in my program I always checked the @@error variable and then made decision to make sure the atomicy of the whole July 27 10:25 PM |
|
|||
|
|