Saturday, January 18, 2014

Thumb Rules for building secure web sites



  1. Don't trust user input. 
  2. Filter input as it comes in,  and accept only what you know is good. i.e Check for white box and black box.
  3. Encode untrusted data before outputting it to your http stream.