Apr 14, 2008

Flirting with browser MIME types

While reading another blog, I ran into a paper that describes how different MIME types are rendered by the different browsers. It provides a nice reference section that points out the MIME types that would force the browser to render HTML content (hence, useful in the hunt for cross-site scripting vulnerabilities).

The paper can be found here.

