Readlist -> Web-app-security -> Jul-2007
 
  1 msg Exploiting reflected XSS vulnerabilities, where user input must come through HTTP Request headers (15 Jul 2007 )  
  3 msgs preventing sign up forms from being used for user enumeration (02 Jul 2007 )