PDF] A threat pattern for the cross-site scripting (XSS) attack
Por um escritor misterioso
Descrição
A threat pattern is presented that describes cross-site scripting (XSS) attacks, which describes how the attack is performed, which vulnerabilities it exploits, and how to stop it. We present a threat pattern that describes cross-site scripting (XSS) attacks. In this attack attackers insert scripts in web applications that will lead to misuses in a target web application. Cross-Site Scripting is listed as number three risk on the 2013 OWASP Top 10 list; it is an attack made possible due to the lack of user input validation or output escaping, which allows attackers to inject malicious code. The pattern describes how the attack is performed, which vulnerabilities it exploits, and how to stop it.
JCP, Free Full-Text
What is Cross-Site Scripting? XSS Cheat Sheet
What is cross-site scripting?
What is Cross-Site Scripting (XSS)? How to Prevent and Fix It
What is Cross-Site Scripting? XSS Cheat Sheet
CWE knowledge base
CROSS SITE SCRIPTING.ppt
Cross-Site Scripting
PDF) A Tutorial on Cross Site Scripting Attack - Defense
What is a Cross-Site Scripting (XSS) attack: Definition & Examples
PDF) Cross Site Scripting (XSS) in Action
PDF] A threat pattern for the cross-site scripting (XSS) attack
What Is Cross-Site Scripting (XSS), Definition