6.1 XSS

Cross site scripting (or XSS) is a common security vulnerability. It is said that 65% of websites are vulnerable to XSS, which is a scary number. XSS is often used to steal session IDs, but it can be used for all kinds of HTML or JavaScript-based attacks. In this lesson we create some examples of XSS and set up our line of defense to counter these attacks.