Cross-site scripting and phishing attack prevention