yapcjapan2016_lt.md 5åã§ããã Perl and web security ma.la CSRFã¨ãXSSã¨ã CSRF: ãã¬ã¼ã ã¯ã¼ã¯ã®æ©è½ä½¿ã£ã¦ä¸ãã XSS: Xslateã¨ãèªåã¨ã¹ã±ã¼ããã¦ä¸ãããjsã®åççæã¯ãã㪠çµãã æ¬é¡ YAPCãªã®ã§Perlåºæã®åé¡ã«ã¤ãã¦è§£èª¬ãã¾ãã Webã¢ããªã±ã¼ã·ã§ã³ã®ä¸è¬çãªæµã ãã©ã¡ã¼ã¿åãåã(ãã©ã¼ã ã¨ãJSONã¨ã) ä½ããã®å¦çããã ã¬ã¹ãã³ã¹ãè¿ã(HTMLã¨ãJSONã¨ã) ãã©ã¼ã ãJSONãå®å
¨ã«åãåãã«ã¯ paramã¯scalarã§åãåãã¾ããã Why $params = { name => $r->param("name"), value => $r->param("value"), } ããããã㨠?name=hoge&name=fuga ã§å£ããã list context
{{#tags}}- {{label}}
{{/tags}}