Welcome nishith123, the newest member New user?    Register    Login
http://www.packetsource.com

Categories
Attacks and Exploits
Certifications and Career
Cryptology
Detection and Prevention
Industry and Userbase
Legal and Regulatory
Network and Infrastructure
Policies and Processes
Protocols and Services
Response and Recovery
Scanning and Auditing
Servers and Systems
Software and Applications
Standards and Methods
Tools and Utilities

Popular Tags
forensics, legal, microsoft, china, vista, spam, ddos, dos, disaster recovery, patriotact

Top Members (rating)
Kelsea (1065)
Mitchell (256)
Jennifer (207)
Paperboy (0)
Melrose2703 (0)
santhoshk (0)
Bulltrader (0)
nishith123 (0)
Atony (0)

RSS Feeds
Papers
Forum Posts

Cross-Site Tracing - Protecting Businesses from a Simple Attack


Source SANS Institute
0 Save | Report | Email
Added on

One of the newest published cross-site scripting attacks (XSS), cross-site tracing (XST) bypasses any security mechanism put into place by a developer and enables an attacker to gain access to an individual's cookies and authentication credential information via a simple client-side script. In this paper, I will discuss how easy cross-site tracing could effect an organization and how an organization can protect itself from this type of attack.

PDF Format Read the Complete Paper



Current Tags:
None

Add Tags:

Current Rating:
0 (0 votes)

Add Rating:


Similar content:
Cross Site Scripting (XSS) FAQ, in Cross Site Scripting
Detection of SQL Injection and Cross-site ScriptingAttacks, in Web Security
Tracing an e-mail message, in Email
Implementing Site-to-Site IPSec Between a Cisco Router and Linux FreeS/WAN, in IPSec VPN
The Art of Reconnaissance - Simple Techniques., in Network Scanning

Post Comment
Your Name:

Title


Comment You may use Posting Codes in your message.
Security Image:
Type the letters and numbers shown. (This is to prevent automated submissions.)

Cite in Modern Language Association (MLA) Style
"Cross-Site Tracing - Protecting Businesses from a Simple Attack" SANS Institute, , UTC. 04 Jul 2008, 11:08 <http://www.sans.org/reading_room/whitepapers/malicious/1140.php>

Cite in Chicago Style
, "Cross-Site Tracing - Protecting Businesses from a Simple Attack," http://www.sans.org/reading_room/whitepapers/malicious/1140.php (accessed Jul 04, 2008 ).