I noticed some HTTP Handlers in my Web.config that appear to intercept HTTP traffic and manipulate it.
Since there has already been an exploit with a similar component produced by Microsoft, what should be done with *.AXD's produced in-house and 3rd parties?
Should I treat servers with custom AXD's differently than other web servers (such as creating a high security VLAN?)