Results 1 to 2 of 2

Thread: xss (Cross Site Scripting) Cheat Sheet

  1. #1
    Junior Member
    Join Date
    Feb 2007
    Posts
    9


    ไม่รู้เหมือนกันว่ามันใช่ได้จริงเปล่า (อ้าว ^^")
    ก็คงมีประโยชน์สำหรับคนที่เขาไว้ใช้ละนะ
    (ถ้า web ซำ้ลบได้เลยนะ เหอะๆ)

    แปลไม่เป็นครับ โปรดอ่านเอง
    XSS (Cross Site Scripting) Cheat Sheet
    Esp: for filter evasion

    By RSnake

    Note from the author: XSS is Cross Site Scripting. If you don't know how XSS (Cross Site Scripting) works, this page probably won't help you. This page is for people who already understand the basics of XSS attacks but want a deep understanding of the nuances regarding filter evasion. This page will also not show you how to mitigate XSS vectors or how to write the actual cookie/credential stealing/replay/session riding portion of the attack. It will simply show the underlying methodology and you can infer the rest. Also, please note my XSS page has been replicated by the OWASP 2.0 Guide in the Appendix section with my permission. However, because this is a living document I suggest you continue to use this site to stay up to date.

    Also, please note that most of these cross site scripting vectors have been tested in the browsers listed at the bottom of the page, however, if you have specific concerns about outdated or obscure versions please download them from Evolt. Please see the XML format of the XSS Cheat Sheet if you intend to use CAL9000 or other automated tools. If you have an RSS reader feel free to subscribe to the Web Application Security RSS feed below, or join the forum:

    **Hidden Content: To see this hidden content your post count must be 2 or greater.**

  2. #2


    เอิ๊กๆ อ่านเท่าไหร่ก็งง เว็บนี้ยิ่งอ่าน ก็ยิ่งงง

    ยังไงก็แล้วแต่ ขอบคุณละกันครับ และแล้วก็นั่งงงต่อไป
    <div align="center">ชีวิต... คืออะไรอ่ะ?</div>

Similar Threads

  1. แนวโน้มการโจมตีเว็บไซต์ แบบ Cross-site scripting (XSS)
    By skynetworker in forum บทความ คอมพิวเตอร์ ทัวไป
    Replies: 1
    Last Post: 07-04-2010, 03:43 AM
  2. (X)cross-Site Scripting
    By rongdoo in forum Hacking/Cracking's E-book
    Replies: 0
    Last Post: 05-09-2009, 01:06 PM
  3. Preventing Cross Site Scripting (XSS)
    By newsbot in forum World Hacking/Security News
    Replies: 0
    Last Post: 17-06-2008, 07:30 AM
  4. About Cross-site Scripting
    By alphaboyz in forum แนะความรู้ด้าน Programming ต่างๆ
    Replies: 0
    Last Post: 10-05-2008, 07:18 PM
  5. Cross site scripting in php
    By newsbot in forum World Hacking/Security News
    Replies: 0
    Last Post: 26-12-2007, 08:59 PM

Members who have read this thread : 0

Actions : (View-Readers)

There are no names to display.

Tags for this Thread

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •