Maugrim The Reaper's Blog

Entries from October 2005

License

Creative Commons License - Some Rights Reserved
Original content in this work is licensed under a Creative Commons License

Powered by

Serendipity PHP Weblog

Syndicate This Blog

Statistics

Last entry: 2010-08-09 22:00
414 entries written
1581 comments have been made
Topics from October, 2005

96 - NaNoWriMo

Monday, October 24. 2005. Posted by Pádraic Brady

95 - Quantum Star SE 0.13 to CVS and ZIP

Saturday, October 22. 2005. Posted by Pádraic Brady

94 - The spanking new installer...

Thursday, October 20. 2005. Posted by Pádraic Brady

93 - QS3 will rock!...when its finished...

Friday, October 14. 2005. Posted by Pádraic Brady

92 - More on Quantum Star SE 0.11 (of v3)

Thursday, October 13. 2005. Posted by Pádraic Brady

91 - AATraders - Another wierd idea...?

Wednesday, October 12. 2005. Posted by Pádraic Brady

90 - Bugs are bad, legacy code bugs are really bad...

Wednesday, October 12. 2005. Posted by Pádraic Brady

89 - Paypal emails - why spammers should study grammer...

Tuesday, October 11. 2005. Posted by Pádraic Brady

88 - Partholan 0.09 Progress

Monday, October 10. 2005. Posted by Pádraic Brady

87 - LIFE Is (a) Fantastic Experiment

Wednesday, October 5. 2005. Posted by Pádraic Brady

85 - QS 3-0.10 :: A Recap

Monday, October 3. 2005. Posted by Pádraic Brady

84 - blogBB and Test-Driven-Development

Sunday, October 2. 2005. Posted by Pádraic Brady

83 - Challenge/Response Secure Logins

Saturday, October 1. 2005. Posted by Pádraic Brady

Calendar

Back October '05 Forward
Mon Tue Wed Thu Fri Sat Sun
         
6 7 8 9
15 16
17 18 19 21 23
25 26 27 29 30
31            

Quicksearch

Comments

Richard about HTML Sanitisation: The Devil's In The Details (And The Vulnerabilities)
Mon, 30.08.2010 23:22
This is quite an interesting p ost and also informational. Ce rtainly one of such posts that brings a fresh perspect [...]


Bobby about HTML Sanitisation: The Devil's In The Details (And The Vulnerabilities)
Tue, 17.08.2010 22:24
I just wanted to thank you for the article and the research. I was looking for a solution and was surprised to fin [...]


Tyson Sturdivant about HTML Sanitisation: The Devil's In The Details (And The Vulnerabilities)
Mon, 16.08.2010 19:30
Does anyone have any input on "Universal Feed Parser" and it s effectiveness?


Pádraic Brady about HTML Sanitisation: The Devil's In The Details (And The Vulnerabilities)
Mon, 16.08.2010 17:44
Is it a big table? ;-) Don't wo rry about it - I'm completely harmless.


Miha about HTML Sanitisation: The Devil's In The Details (And The Vulnerabilities)
Thu, 12.08.2010 15:59
OMG. What did I write. You men tioned html5lib in your post. And I go on mentioning just th at. /me is now ashamed [...]


Miha about HTML Sanitisation: The Devil's In The Details (And The Vulnerabilities)
Wed, 11.08.2010 20:46
html5lib (http://code.google.c om/p/html5lib/) is the one I r un on a few days ago, so I'm p robably guessing that th [...]


Padraic Brady about HTML Sanitisation: The Devil's In The Details (And The Vulnerabilities)
Wed, 11.08.2010 19:56
I haven't decided on it yet. A t the moment, many server side development tools are in the same boat. libxml2 and t [...]


Miha about HTML Sanitisation: The Devil's In The Details (And The Vulnerabilities)
Wed, 11.08.2010 19:32
@Padraic: What will you do in a 6months when html5 becomes p opular and along with it stand ardized parser. Its prob [...]


Maarten about HTML Sanitisation: The Devil's In The Details (And The Vulnerabilities)
Wed, 11.08.2010 12:45
looking forward to your soluti on. To be honest, we're using HTMLPurifier and I have yet to encounter big problems [...]


Padraic Brady about HTML Sanitisation: The Devil's In The Details (And The Vulnerabilities)
Tue, 10.08.2010 18:44
Quoting from the original repo rt (26 June '10): "Bonus vu lnerability from a brief look through of the blacklist [...]


Jeremy Cook about HTML Sanitisation: The Devil's In The Details (And The Vulnerabilities)
Tue, 10.08.2010 18:30
Thanks for the excellent artic le. Very informative.


Brett Bieber about HTML Sanitisation: The Devil's In The Details (And The Vulnerabilities)
Tue, 10.08.2010 17:43
I believe you're incorrect reg arding the -ms-behavior css er ror in HTML_Safe. The blacklis t includes "behavior" wh [...]


Pádraic Brady about HTML Sanitisation: The Devil's In The Details (And The Vulnerabilities)
Tue, 10.08.2010 11:18
Yes, it's being proposed to Ze nd Framework. HTMLPurifier rea lly is that good, largely beca use it properly normalis [...]


Pádraic Brady about HTML Sanitisation: The Devil's In The Details (And The Vulnerabilities)
Tue, 10.08.2010 11:13
Hi Santosh, As the article notes, CSS may be used to styl e elements in such a way that may overlay or expand th [...]


Peter about HTML Sanitisation: The Devil's In The Details (And The Vulnerabilities)
Tue, 10.08.2010 10:15
So if HTML Purifier is that go od, will you still be proposin g your own for inclusion into Zend?


Top Referrers