An XSS filter will be included on Internet Explorer version 8 according to an article from The Register.
The engineers will make sure that the filter will not slow down the browser or choke on false positives. “It is challenging to mitigate XSS in a way that balances the needs of compatibility, security, and performance,” writes David Ross who is a Microsoft Security Vulnerability Research & Defense blogger.
Giorgio Maone who is the creator of a Firefox plugin called NoScript told The Register that, “If you deploy a security feature already knowing how to work-around it, I think it’s more security theater than anything else.”
Source: The Register

Articles
Blogs
Kits
Forums
Lee