Take Charge of Your Security

Posted by: youve been HAACKED, on 08 Feb 2009 | View original | Bookmarked: 0 time(s)

Today I read something where someone was comparing Web Forms to ASP.NET MVC and suggested that Web Forms does a lot more than ASP.NET MVC to protect your site from malicious attacks. One example cited was that Server controls automatically handled HTML encoding so you dont have to really think about it. The idea here is that Web Forms automatically protects you from XSS attacks. My friends, Im afraid this is just not true. Take a look at the following page code. <%@ Page Language="C#"...

Advertisement
Free Agile Project Management Tool from Telerik
TeamPulse Community Edition helps your team effectively capture requirements, manage project plans, assign and track work, and most importantly, be continually connected with each other.
Category: Security | Other Posts: View all posts by this blogger | Report as irrelevant | View bloggers stats | Views: 987 | Hits: 31

Similar Posts

  • Html Encoding Nuggets With ASP.NET MVC 2 more
  • How to retire (respectfully) legacy systems more
  • Silverlight Firestarter Watch it Live Online or in Person more
  • Subtext Security Issue and Patch more
  • Remove the business context from your services more
  • Visual Studio 2010 1-Click Publishing more
  • Is Silverlight 2 ready for the Enterprise solution? more
  • Using Enterprise Architecture for forecast and implementation of Merges and Acquisitions (M&A) more
  • How to completely process and filter all bounced e-mail messages and get a notification via email when it's completed! more
  • Updating ACS Samples for the March CTP more

News Categories

.NET | Agile | Ajax | Architecture | ASP.NET | BizTalk | C# | Certification | Data | DataGrid | DataSet | Debugger | DotNetNuke | Events | GridView | IIS | Indigo | JavaScript | Mobile | Mono | Patterns and Practices | Performance | Podcast | Refactor | Regex | Security | Sharepoint | Silverlight | Smart Client Applications | Software | SQL | VB.NET | Visual Studio | W3 | WCF | WinFx | WPF | WSE | XAML | XLinq | XML | XSD