Secure web applications – using JS to create a new web language
When you look around on security mailing lists you’ll probably an increase in security warnings relating to web applications… many of them based on JS code injected into a webpage. This has lead to the uncomfortable situation where pages that are based on usercontent can not trust their users to provide JS as part of [...]