WINTXCODERS

Informática en general => Cursos & Libros => Mensaje iniciado por: WIитX en Noviembre 22, 2017, 02:01:19 AM

Título: 🚀 Advanced XSS
Publicado por: WIитX en Noviembre 22, 2017, 02:01:19 AM
📘  Nombre del libro: Advanced XSS
📃  Descripción: I recently read in an article the incorrect statement that cross site scripting (XSS) can not be exploited if the POST method is used instead of GET, which is completely false. The method used to exploit POST variables may also be modified to allow for more advanced timing attacks which could allow an attacker to gain access to areas that require the user log in to a password protected area. When coupled with social engineering this method becomes an extremely reliable tool for attackers to gain access to secured areas via account hijacking.

DESCARGA: https://mega.nz/#!7RhVyYqT!8DVUpFeLCcS7AWq9edHPCqv3esJpOxz-8U67kh4DcAg