Passing Tamper-Proof QueryString Parameters


Peace Be Upon You,

I faced a situation in which I needed to hide the user from playing with the query string parameters being passed to my webpage.

I found a nice technique to be able of hashing the query string in a manner such that even a hacker who knows your hashing
algorithm won’t be able of sending parameters different than those that should be passed to your webpage and be able of viewing un-authorized data or accomplish un-authorized actions.

Here is the post:
http://www.4guysfromrolla.com/articles/083105-1.aspx

Enjoy ! 🙂

Advertisements

Leave a Reply

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out / Change )

Twitter picture

You are commenting using your Twitter account. Log Out / Change )

Facebook photo

You are commenting using your Facebook account. Log Out / Change )

Google+ photo

You are commenting using your Google+ account. Log Out / Change )

Connecting to %s