Which of the following can be implemented in hardware or software to protect a web server from cross-site scripting attacks?
The BEST methods for a web developer to prevent the website application code from being vulnerable to cross-site request forgery (XSRF) are to: (Select TWO).