Jason published a blog entry about the X-FRAME-OPTIONS header: http://jbu.me/20 #jasonlam_sec #websecurity #xss
Replying to @johullrich
@johullrich I'm thinking it would be helpful to post details on how to set the X-FRAME-OPTIONS header by default in Apache and IIS...

Oct 15, 2009 · 8:24 PM UTC