Windy wrote:What's a regex that can be applied to a string to prevent any possible XSS attack?
- Code: Select all
/(\S|\s)*/g
Don't use regexes to prevent XSS attacks? just maintain sane data, don't eval things, stick to CORS and let the browser handle the rest.
NathanLoiselle wrote:If I wear a dead computer's skin can I claim that I am, in fact, an AI?
No, you need to wear its brains.