Speak Asia Online Money Earning: SPEAK ASIA Online Income
Make Money Online & Earn Online Income @ RAM SURVEY
Add me as a friend on FACEBOOK: CLICK HERE to add me on FaceBook

Receive Daily Updates

Enter your email address:

Saturday, March 6, 2010

How to hack websites and damage to a web application using Cross-Site Scripting (XSS) vulnerabilities: Its Add-ons for Firefox

Version 0.4.3
Works with Firefox: 2.0.0.8 3.6a1pre
Updated May 25, 2009
Developer Security Compass
Rating Rated 5 out of 5 stars
Cross-Site Scripting (XSS) is a common flaw found in todays web applications. XSS flaws can cause serious damage to a web application. Detecting XSS vulnerabilities early in the development process will help protect a web application from unnecessary flaws. XSS-Me is the Exploit-Me tool used to test for reflected XSS vulnerabilities.
XSS-Me is the Exploit-Me tool used to test for reflected Cross-Site Scripting (XSS). It does NOT currently test for stored XSS.rnrnThe tool works by submitting your HTML forms and substituting the form value with strings that are representative of an XSS attack.rnrnIf the resulting HTML page sets a specific JavaScript value (document.vulnerable=true) then the tool marks the page as vulnerable to the given XSS string.rnrnThe tool does not attempting to compromise the security of the given system. It looks for possible entry points for an attack against the system. There is no port scanning, packet sniffing, password hacking or firewall attacks done by the tool.rnrnYou can think of the work done by the tool as the same as the QA testers for the site manually entering all of these strings into the form fields.
Too lazy to say Thanks or comment here? Why not too lazy to read my post?? If you like this post and want us to post similar articles, Pls give us a feedback and leave a comment here.

2 Visitor Reactions & Comments:

ajayanandcise said...

thanx for the post .......Amarjit bro i wanna ask u how to hide exe in jpeg or music file if someones clik jpeg exe shud run ...is that possible....thanx in advance looking eagerly for ur response

Amarjit Singh said...

Hi Ajay, All details already been published. Check http://www.freehacking.net/2009/05/trojans-and-backdoors-5-wrappers.html Thanks for comment and keep visiting