Monday, September 01, 2008

Protecting Your Cookies: HttpOnly

Atwood warned us of an old way to defeat a class of cross-site-scripting. Yes, it deserves a re-issuing and refreshing, but above all we do it the guidance way. Yes, it is there...

