发新话题
打印

[转载]Client-side JavaScript XSS Scanner (POC)

[转载]Client-side JavaScript XSS Scanner (POC)

信息来源:邪恶八进制信息安全团队(www.eviloctal.com

This POC shows how easy is to implement XSS scanner by using only JavaScript and a few tricks from the Web2.0 world. Similar technique can be easily implemented into AJAX/XSS worms which will allow them to propagate across several domains and also find new vulnerabilities on their own. Don't be evil. Use the POC for educational and demonstration purposes only.

http://www.gnucitizen.org/blog/javascript-xss-scanner
曾几何时,有人对我说:装B遭雷劈。我说:去你妈的。于是,这个人又对我说:如果再说脏话,上帝会惩罚你的。我说:我操上帝。结论:彪悍的人生不需要上帝。

TOP

发新话题