Saturday, November 7, 2020

Cross Site Scripting (XSS) with Md. Nur A Alam Dipu

 

Md. Nur A Alam Dipu <depu1994@gmail.com>
To:admin@sin0nime.com
Fri, Nov 6 at 2:43 AM
Hi,

https://sin0nime.com/ This domain is vulnerable to xss and sql injection.

 

Example of Cross-Site Scripting (XSS):
 

More information:
Cross-Site Scripting – Application Security – Google
Introduction to cross-site scripting
Target Audience This document is intended for anyone who develops websites or is interested in web security topics. A background in HTML, JavaScript, and Document Object Model (DOM) would be helpful for some of the more technical details.
https://www.google.com/about/appsecurity/learning/xss/
 

Most common JavaScript vulnerabilities and how to fix them

Listed below are the most common JavaScript vulnerabilities:

  1. Cross-Site Scripting (XSS)
  2. SQL injection (SQLi)
  3. Open-source vulnerabilities

https://levelup.gitconnected.com/javascript-vulnerabilities-e5391a746c90