Tool Stops XSS, SQL Injection Attacks

Excerpt:
“Ivan Arce, CTO of Core Security, says the tool, called GRASP, blocks attacks using a run-time "taint analysis" technique that examines the application's data and doesn’t require any rewriting of the app's code. ‘It's not easy to fix all the bugs’ in a Web application, Arce says. The tool works at the ‘byte level,’ so Web developers don't have to change the source code for each application, he says.”
Source: darkreading.com











