Simon Willison’s Weblog

Subscribe
Atom feed for blacklisting

2 items tagged “blacklisting”

2008

Javascript protocol fuzz results. If your HTML sanitizer uses blacklisting rather than whitelisting here are a few more weird ways of injecting javascript: in to a link that you need to worry about—but you should really switch to whitelisting http:// and https:// instead.

# 30th June 2008, 3:57 pm / blacklisting, firefox, fuzztesting, html, javascript, sanitization, security, whitelisting

2007

Crowd 1.1.0 Release Notes. Atlassian software are now offering a commercial OpenID provider, with the ability to hook in to an existing LDAP directory and some smart whitelist / blacklist options.

# 21st June 2007, 8:29 am / atlassian, blacklisting, crowd, ldap, openid, whitelisting