views:

182

answers:

3

Hello Guys,

I am looking for damn good open source XSS prevention script to implement in my php mvc framework.

Any ideas?

A: 

Although this is not for PHP it could at least give you some ideas for writing your own code. I suppose PHP has the same built in functions to validate/parse URL, encode HTML, etc ... See if that helps you at all ....

afgallo
+1  A: 

Its not quite what you are asking for, but check out: http://code.google.com/p/owasp-esapi-php/

Noon Silk
A: 

You might check out the AntiSamy project, managed by the Open Web Application Security Project (OWASP).

It's named AntiSamy after Samy Kamkar, creator of the MySpace worm.

http://www.owasp.org/index.php/Category%3AOWASP%5FAntiSamy%5FProject

Ben Walther
hmm, thanks for sharing
Sarfraz