首页 > 其他 > 详细

Cross-Site Scripting

时间:2019-01-01 23:45:48      阅读:352      评论:0      收藏:0      [点我收藏+]

1、 Reflected  XSS ,we can use more sophisticated Javascript logic to collect personal information from its vitim,   we can use javascript  <script>alert(1)</script>  ,can replace the IP address ,for mopre advanced XSS attack check out Beef XSS Farmework on kali linux .

技术分享图片

2、Stored XSS : by saving the script into a stored location through a  page ,when anyone visited the page will be infected.

技术分享图片

3、Exploiting Stored XSS using the header

      I will intercept the page using  the Proxy tab in the Burp ,then modify the Browrse Agent with a javaScript alert and forward it to the server( using the forward button )

技术分享图片技术分享图片

this is  the result of changing hte use agent if brower using XSS trick in Burp, this is a persistent XSS and every time thw admin of site visits this the page ,he will be prompted the payload

技术分享图片

3、 DOM XSS

   looking the programming  try{document.getElementById("idUsernameInput").innerHTML="this password is for ";}catch(e){};alert(1);try{v=" ";} catch(e){alert(Error: "+message);}

    then go to the burp/docode and paste the  value there to encode it  as an url :

技术分享图片

an then you copy the encode use of HTML to end the page=[]   you can you CTRL +F to find the key word gus

技术分享图片

4、javaScript validation

    how over come javascript using Burp , first let changer the security  grade to the One.  in this tims  if you use javascript you we see as follow

技术分享图片

 because the javascript validation function.an you see the script was blocked by the browser .but i can use the Burp changer the target_host , as show follow

技术分享图片

then I change the  target_host to javaScript   as follow

技术分享图片

技术分享图片

5、Cross-site Request Forgery

     the setp one  is  victim :  first you must ensure the admin or he can is a super blogger.

     the setp second is  attack : use Burp to intercept the request ,copy the HTML code to another file named add_you_blog.html to lay /var/www/html/directory and started apacahe server. the victim to go to that page and click button .you can get the scession

技术分享图片

技术分享图片

 

Cross-Site Scripting

原文:https://www.cnblogs.com/xinxianquan/p/10206474.html

(0)
(0)
   
举报
评论 一句话评论(0
关于我们 - 联系我们 - 留言反馈 - 联系我们:wmxa8@hotmail.com
© 2014 bubuko.com 版权所有
打开技术之扣,分享程序人生!