Some security articles "The Truth About sessions": http://shiflett.org/articles/the-truth-about-ssions "Writing Secure ASP Scripts": http://www.nextgenss.com/papers/asp.pdf " session_fixation ": http://downloads.securityfocus.com/library/session_fixation.pdf" WhitePaper_Blind_XPath_Injection ": http://www.sanctuminc.com/pdfc/WhitePaper_Blind_XPath_Injection_20040518.pdf" Web_Application_Security_TISC.pdf ": http: //www.sanctuminc .com / pdf / Web_Application_Security_TISC.pdf "Blind_SQLInjection": http://www.spidynamics.com/whitepapers/Blind_SQLInjection.pdf "Advanced SQL Injection In SQL Server Applications": http://www.nextgenss.com/papers/more_advanced_sql_injection .pdf