Professional Webmasters Community
Would you like to react to this message? Create an account in a few clicks or log in to continue.

Cross Site Scripting (XSS) at User-Agent

Go down

Cross Site Scripting (XSS) at User-Agent Empty Cross Site Scripting (XSS) at User-Agent

Post  andry Tue Nov 09, 2010 2:38 am

Upon following-up the Honeypot project from WASC (WASC Distributed Open Proxy Honeypot), we were faced with a post by Ryan Barnett with comments about use of cross site scripting tags (XSS) in the de User-Agent heading (WASC Distributed Open Proxy Honeypot Update - XSS in User-Agent Field - http://tacticalwebappsec.blogspot.com/2009/08/wasc-distributed-open-proxy-honeypot.html )

We were curious as to know what we could obtain as a benefit in using this type of attack.

Initially, we have modified our User-Agent to:

Read more: Cross Site Scripting (XSS) at User-Agent
andry
andry
Moderator
Moderator

Posts : 467
Join date : 2010-05-07

Back to top Go down

Back to top

- Similar topics

 
Permissions in this forum:
You cannot reply to topics in this forum