Geek's Portal For Computers Graphics Operating Systems Multi-Media Networking Programming Data Format and  News
[ Start Page ] [ Contacting ] [ About ] [ Link To Us ] [ Geek Gear ] Tue, Oct 7 2008 
Free Internet Tools by web-geek.com Internet Tools
Administrator Tools
Name Server Look Up
Ping Test
Who Is
Trace Route

Web Developer Tools
Web Safe Colors
HTML Character Map
PopUp Generator
Body Color CSS v1.0
Browser Information
Meta Tag Generator
Keywords Generator
Link Popularity
JavaScript Escape / Unescape Converter
JavaScript Drop Down Menu Builder
Web / Virtual Hosting Directory

Reference Documention
HTML 4.0 Reference

Reference Tables
Character Conversion Table
Domain Name Suffixes

Cheat Sheets
Vi / Vim Basic Commands


WEB-GEEK.COM's Feature Sites Feature Sites
oGobogo Internet Search Directory
News.web-geek.com Internet News Directory
Pdawebgeek.com PDA Friendly Web Directory
Games.web-geek.com Free Online Games



folder Directories
Top > Computers > Security > Internet > WWW > Cross Site Scripting
Bypassing Javascript Filters - The Flash Attack Paper by EyeonSecurity explaining how to inject CSS attacks into Web applications which allow Flash content.
Apache: Cross Site Scripting Information How the attack affects websites hosted on the Apache webserver and Apache specific issues.
CERT Advisory CA-2000-02: Malicious HTML Tags Embedded in Client Web Requests Advisory published jointly by the CERT Coordination Center, DoD-CERT, the DoD Joint Task Force for Computer Network Defense (JTF-CND), the Federal Computer Incident Response Capability (FedCIRC), and the National Infrastructure Protection Center (NIPC).
CERT/CC: How To Remove Meta-characters From User-Supplied Data In CGI Scripts Examples in C and Perl.
The Cross Site Scripting FAQ Answers questions on identification, threats, and prevention. Provides examples and links.
CNN.com: Schwab's Site Could be Vulnerable Charles Schwab's online customers are at risk of having their account information accessed and their accounts manipulated due to the same software vulnerability that affected E-Trade's Web site in September.
Cross Site Scripting Vulnerabilities Security consultant David deVitry offers background information, a free CSS vulnerability detector, and a list of vulnerable sites.
InfoWorld Opinions: Cross-site Scripting Article on this often overlooked threat with links.
perl.com: Preventing Cross-site Scripting Attacks Paul Lindner, author of the mod_perl cookbook, explains how to secure our sites against Cross-Site Scripting attacks using mod_perl and Apache::TaintRequest.
'Cross-site scripting' tears holes in Net security USA Today article by Byron Acohido that details WhiteHat Security's assesment of Hotmail, Yahoo, Amazon, and America Online.
Sponsor Sponsor


  © 1999-2006, web-geek.com a Geek Boy Enterprises, Inc. website terms and conditions of use [ Start Page ] [ Contacting ] [ About ] [ Link To US ]