1.WebGoat
http://www.owasp.org.cn/
学习Web应用漏洞最好的教程----WebGoat
http://blog.csdn.net/bill_lee_sh_cn/article/details/4004109
Burp Suite
http://portswigger.net/
Web App Security Training Movies
http://sourceforge.net/projects/webappsecmovies/files/latest/download
在线看
http://webappsecmovies.sourceforge.net/webgoat/
Fiddler
web debugger fiddler 使用小结
http://www.telerik.com/fiddler
encode URI
http://meyerweb.com/eric/tools/dencoder/
document.write(encodeURIComponent(http://www.w3school.com.cn)) http%3A%2F%2Fwww.w3school.com.cn