PaulDotCom mailing list archives

Fuzzy Wuzzy Was A Bar Code


From: irongeek at irongeek.com (Adrian Crenshaw)
Date: Wed, 27 Jan 2010 11:38:18 -0500

I think it was Mick that mentioned Barcodes in the last episode, and using
them for injection. I made the following cheat sheet:

http://www.irongeek.com/xss-sql-injection-fuzzing-barcode-generator.php

Because of the nature of what it's meant for, it's hard to filter for XSS.
Could you all take a look at it and give suggestions/fixes before I post it
to my front page?

Thanks,
Adrian
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://mail.pauldotcom.com/pipermail/pauldotcom/attachments/20100127/14cb321d/attachment.htm 


Current thread: