Post Reply 
Andrew's Security Filter(s) v5.62 (May 10, 2009)
Jun. 17, 2008, 02:24 AM
Post: #53
RE: Andrew's Security Filter(s) v5.56 (June 15, 2008)
Mike and Kye-U;

Been following along, enjoying the ride.........Wink

Don't forget that in some cases, the "<script...." you see in a page's source code didn't necessarily arrive in that form. Mike's comment about the DOM reminded me that you often see the write method used to create things like this:

<document.write "<scr" + "ipt>"...... etc.>

Fortunately, dbug.. will show this coding correctly. (Mike, is this what you meant by the tag sometimes being encoded?) And Kye-U, I think you once wrote a filter to ferret out this kind of behavio(u)r, didn't you?

This might also be the reason why other filters fail to work as expected, with no seeming logic for said failure. Whistling



Oddysey

I'm no longer in the rat race - the rats won't have me!
Add Thank You Quote this message in a reply
Post Reply 


Messages In This Thread
RE: Andrew's Security Filter(s) - Guest - Aug. 02, 2007, 10:23 AM
RE: Andrew's Security Filter(s) - usr - Aug. 02, 2007, 11:05 AM
RE: Andrew's Security Filter(s) - Kye-U - Aug. 02, 2007, 02:01 PM
RE: Andrew's Security Filter(s) - usr - Aug. 02, 2007, 02:07 PM
RE: Andrew's Security Filter(s) - Oddysey - Aug. 02, 2007, 06:33 PM
RE: Andrew's Security Filter(s) - usr - Aug. 02, 2007, 09:11 PM
RE: Andrew's Security Filter(s) - Kye-U - Aug. 02, 2007, 10:43 PM
RE: Andrew's Security Filter(s) - usr - Aug. 02, 2007, 11:53 PM
RE: Andrew's Security Filter(s) - Kye-U - Aug. 04, 2007, 04:26 AM
RE: Andrew's Security Filter(s) - usr - Aug. 04, 2007, 10:21 AM
RE: Andrew's Security Filter(s) - Kye-U - Oct. 22, 2007, 05:15 AM
RE: Andrew's Security Filter(s) - usr - Nov. 02, 2007, 08:40 PM
RE: Andrew's Security Filter(s) v3 (Nov. 11, 2007) - Guest - Apr. 22, 2008, 12:01 PM
RE: Andrew's Security Filter(s) v5.56 (June 15, 2008) - Oddysey - Jun. 17, 2008 02:24 AM

Forum Jump: