Jump to content
shamat

Situri "Hacker Safe" vulnerabile XSS

Recommended Posts

Peste 60 de situri, certificate de serviciul ScanAlert de la McAfee ca fiind Hacker Safe", au fost gasite vulnerabile la atacuri de tip cross-site scripting (XSS).

Printre ele se numara si situl www.scanalert.com .

"More than 60 Web sites certified to be "Hacker Safe" by McAfee's ScanAlert service have been vulnerable to cross-site scripting (XSS) attacks over the past year, including the ScanAlert Web site itself. While the XSS hole in the ScanAlert site and others have been addressed, some apparently have not been, leaving visitors potentially vulnerable to client-side attacks."

Stire preluata de pe informationweek.com

Link to comment
Share on other sites

Certificatul asta e de tot cacatul.

Majoritatea siteurilor certificate "hacker safe" pe care am intrat erau vulnerabile la XSS chiar si la SearchForm :shock:.

multi oameni cu care incep discutii de hackeri si cum se "sparg" serverele accentueaza doar pe server-ul si sistemul de operare in sine.

deci hacker safe probabil inseamna ca e sub cheie si avea ultima versiune de apache, proftpd, sendmail...

Link to comment
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.



×
×
  • Create New...