[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[WEB SECURITY] WASC Announcement: 'Script Mapping Project' Call for Participants
- From: announcements@xxxxxxxxxxxxx
- Subject: [WEB SECURITY] WASC Announcement: 'Script Mapping Project' Call for Participants
- Date: Mon, 27 Aug 2007 13:31:01 -0400 (EDT)
The Web Application Security Consortium is pleased to announce a new
project "Script Mapping" which aims to map the possible techniques
to include client-side script in html pages.
A brief description of the project
The purpose of the Script Mapping Project is to come up with an
exhaustive list of vectors to execute script within a web page without
the explicit use of <script> tags. This data can be useful when testing
poorly implemented Cross-site Scripting blacklist filters, for those wishing
to build an html white list system, as well as other uses.
Currently WASC is seeking volunteers from various sections of the
community including penetration testers, security researchers,
and developers to contribute to this project.
The project page can be found at
http://www.webappsec.org/projects/scriptmapping/
If you would like to be involved with the project, please contact
Romain Gaucher (r@xxxxxxxxxxxxx)
Regards,
- announcements_at_webappsec.org
http://www.webappsec.org/ The Web Application Security Consortium
----------------------------------------------------------------------------
Join us on IRC: irc.freenode.net #webappsec
Have a question? Search The Web Security Mailing List Archives:
http://www.webappsec.org/lists/websecurity/
Subscribe via RSS:
http://www.webappsec.org/rss/websecurity.rss [RSS Feed]
Brought to you by http://www.webappsec.org
Search this site
|