io.kent Posted November 9, 2012 Report Posted November 9, 2012 Indice:1.- Introducción2.- Tipos de Ataques- Reflected Cross Site Scripting (XSS Reflejado)- Stored Cross Site Scripting (XSS Persistente)- DOM Cross Site Scripting (DOM XSS)- Cross Site Flashing (XSF)- Cross Site Request/Reference Forgery (CSRF)- Cross Frame Scripting (XFS)- Cross Zone Scripting (XZS)- Cross Agent Scripting (XAS)- Cross Referer Scripting (XRS)- Denial of Service (XSSDoS)- Flash! Attack- Induced XSS- Image Scripting- anti-DNS Pinning- IMAP3 XSS- MHTML XSS- Expect Vulnerability3.- Evitando Filtros4.- PoC examples - Bypassing filters- Data Control PoC- Frame Jacking PoC5.- Técnicas de ataque+ Classic XSS - Robando “cookies”+ XSS Proxy+ XSS Shell+ Ajax Exploitation+ XSS Virus / Worms+ Router jacking+ WAN Browser hijacking- DNS cache poison- XSS Injected code on server- Practical Browser Hijacking6.- XSS Cheats - Fuzz Vectors7.- Screenshots8.- Herramientas9.- Links10.- Bibliografía11.- Licencia de uso12.- Autoraici aveti un tutorial complet, de aici am invatat si eu cate ceva, sigur o sa va ajute!document : http://xsser.sourceforge.net/xsser/XSS_for_fun_and_profit_SCG09.pdf stiu ca trebuie postat in limba engleza, dar al postez aici, pentru ca se intelege destul de bine! Quote