wisemonkeys logo
FeedNotificationProfileManage Forms
FeedNotificationSearchSign in
wisemonkeys logo

Blogs

Cross site scripting Attack

profile
02_Shaheen Ansari
Oct 20, 2021
0 Likes
0 Discussions
73 Reads

Cross site scripting attack when attacker injects the malicious code into the code of the web application or a web server .

It can happen in many ways like attacker can attack the web server through victim visits or Attackers can also attack victim through web server database .

Generally Attacker do cross site scripting attacks to steal the victim personal data or to get the access to the web server database where all the users of that website is stored. Attacker can also hijack the session it can be dangerous because with that session I'd attacker can access to the user activity without even login to the site.

To prevent from this kind of attacks , we can scan the vulnerabilities of the website, or also we can limit the use of HTML in inputs, sanitizing the data inputs or use the web application firewall and many more.

With the help of very common vectors this attack can be possible, few common vectors listed below:-

<Script>

<Img>

<iframe>

<Body>

<Link>

Through this vectors attackers can inject their code in this tag and get the desired output.

From preventing from this attacks the developer must understand the how cross site scripting works so developer's can take proper precautions to avoid this kind of attacks in future.


Comments ()


Sign in

Read Next

memory managment

Blog banner

Is Social Media Marketing The Next Wave Of Digital Marketing?

Blog banner

The Difference Between Plaque and Tartar Explained Simply

Blog banner

The Dark Web: A Breeding Ground for Cybercriminals – How to Guard Against Threats

Blog banner

Tracking Emails & Email Crimes

Blog banner

A little bit of salt is all the hash needs!

Blog banner

Data Visualization – Importance and tools (Tableau, Power BI)

Blog banner

Windows Operating System

Blog banner

Race Condition

Blog banner

Scala - a programming tool

Blog banner

Multiple processor scheduling

Blog banner

Introduction to Data Science: Life Cycle & Applications

Blog banner

A book review

Blog banner

WORKFRONT SOFTWARE

Blog banner

MODERN OPERATING SYSTEM

Blog banner

A small world of Sockets

Blog banner

E-Governance

Blog banner

Are Social Media Paid Campaigns Worth It?

Blog banner

Is it important to follow all the trends that come up on social media?

Blog banner

Esri India launches Policy Maps.

Blog banner

6 Digital Marketing Trends You Must Watch Out For In 2022

Blog banner

From Websites To Super Apps For Digital User Experience

Blog banner

How Puppet Shows and Role Play Teach Empathy to Preschoolers

Blog banner

Major achievement

Blog banner

Deadlock

Blog banner

File Systems in OS.

Blog banner

Benefits of Yoga

Blog banner

Child labour

Blog banner

Process Creation

Blog banner

How to Encrypt and Decrypt Using GNU PGP

Blog banner

Virtualisation

Blog banner

Bots and Cyber Security

Blog banner

Types of Malware in Cyber Security

Blog banner

Beauty of indian railway

Blog banner

Domain Name System

Blog banner

Guidelines for a low sodium diet.

Blog banner

Outlook.com

Blog banner

38_Network Sniffing Techniques_SBC

Blog banner

What is Minting & Mining

Blog banner

Emailing the merger document

Blog banner

Senseless Teeths

Blog banner

GIS Bharat Maps

Blog banner