[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [WEB SECURITY] countermeasure against attacks through HTML shared files
- From: Bil Corry <bil@xxxxxxxxx>
- Subject: Re: [WEB SECURITY] countermeasure against attacks through HTML shared files
- Date: Fri, 07 Nov 2008 14:41:19 -0600
Bil Corry wrote on 11/7/2008 10:49 AM:
> (3) Internet Explorer (and other browsers to some extent) do
> content-sniffing, so a file doesn't have to be explicitly HTML in
> order for Internet Explorer to display the file as HTML (for example,
> the file can be a GIF, but still by shown as HTML by IE).
Ian Hickson is looking for someone to edit the HTML5-related specification for content-sniffing (scroll down to #8):
http://lists.w3.org/Archives/Public/public-html/2008Oct/0127.html
If you're interested, contact Ian directly.
- Bil
----------------------------------------------------------------------------
Join us on IRC: irc.freenode.net #webappsec
Have a question? Search The Web Security Mailing List Archives:
http://www.webappsec.org/lists/websecurity/archive/
Subscribe via RSS:
http://www.webappsec.org/rss/websecurity.rss [RSS Feed]
Join WASC on LinkedIn
http://www.linkedin.com/e/gis/83336/4B20E4374DBA
Brought to you by http://www.webappsec.org
Search this site
|