Pseudocode for securing an online payment system against SQL injection and cross-site scripting (XSS) attacks.
MSCS-535 Secure Software Development
University of the Cumberlands
- secure_payment.md - Main payment processing flow with HTTPS enforcement and session validation
- sql_injection_defense.md - Parameterized query defense against SQL injection
- xss_defense.md - Input sanitization and output encoding defense against XSS
- Richardson, T., & Thies, C. N. (2012). Secure software design. Jones & Bartlett Learning.
- Kohnfelder, L. (2021). Designing secure software. Random House Publishing Services.