当前位置:网站首页>The website is harmed by XSS hanging horse
The website is harmed by XSS hanging horse
2022-06-11 00:04:00 【websinesafe】
You may also encounter some situations , For example, some corporate websites or websites with large traffic volume will appear illegal advertisements for spinach . This form of web page hanging horse , For example, it can generate JS Code , Then I'll hang one for you XSS Cross site attack such a code , When you are an older browser , This vulnerability of the browser can be used to directly attack your operating system , So as to obtain higher system permissions .

Do you like IE This is the case with browsers , We can check it through a web page , After you check it, you can penetrate into its computer through the web page , So as to obtain the system permission in advance , Then do what you want to do here , This is absolutely OK . So this is what we call , So it usually plays this kind of edge ball , What is a sideball ? For example, some websites with illegal content , This thing itself is illegal , So he was hacked , He can only admit that he is dumb , He won't go to the police and say that my illegal website has been hacked .
Then you don't mean to throw yourself into the net, do you ? It is not easy to do this in Chinese Mainland . The second is where this often happens ? Movie download . So what is the third occurrence ? What appears is the website you created with open source code , This movie website often does something ? Collection of user information , For example, when you register , It will let you enter your email , Right ? And some of your contact information , At this time, he is actually doing some information collection for you , Then when you download , It allows you to input, for example, what thunderbolt is, right ? Let you enter your username and password , At this time, you are in the process of input , Its background can do keyboard recording , So sometimes I often find that you take Xunlei to a pirated website to download the movie. After that , Maybe you can't get your Xunlei account , I found that the password is incorrect , At this time, it may be recorded by keyboard , So your user name , Your email , Your email will send some addresses , For example, the email password you registered is exactly your correct password, right ? So there will be some personal information collected in the mailbox , What's the information ? Is there any card bill ?

Now it's all electronic bills , Right ? In the early years, there were paper bills , The bank will send you a bill every fixed day , Now it's all electronic bills , Do you have your contact information on the electronic bill ? Do you have your card information ? For example, card number , The security codes behind the card number , Do you have a work address ? What is your last name, right ? If you don't have a full name, you can call a gentleman , When you see a lady, you call her a lady, right ? So these are a way for us to divulge information , Including some game passwords and so on .

Then there are also some private servers , How to hang a horse when the web page hangs a horse , It is directly through script sentence , adopt script The label of , Right ? Can directly generate a code for you , Of course, if you don't kill the virus , Maybe you're particularly vulnerable , When you have some awesome anti-virus , If he can't detect it , You might get caught . So there will be some hacking here 、 dig 、XSS And so on .
边栏推荐
- After deepin20 menu startup option, the self-test indicates that iwlwwifi is stopped
- 长投学堂开户安全吗?靠谱吗?
- How to handle the database query error with Emoji expression in Typecho- Xingze V Club
- 【Pygame小游戏】不怕你走不过系列:极致AI走迷宫,学习完带你打开新世界大门~(附游戏源码)
- 集合删除元素技巧 removeIf
- Exception 0xc00000005 code occurred when LabVIEW called DLL
- Typecho website speed optimization - Xingze V Club
- LabVIEW obtains the information of all points found by the clamp function
- 【Pygame小游戏】《坦克大战》,那些童年的游戏你还记得几个呢?
- Leetcode-713 subarray with product less than k
猜你喜欢

30 | how to reset the consumer group displacement?

【Pygame小游戏】首月破亿下载 一款高度融合了「超休闲游戏特性」的佳作~

LabVIEW用高速数据流盘

LabVIEW phase locked loop (PLL)

csdn每日一练——有序表的折半查找

LabVIEW确定控件在显示器坐标系中的位置
![[pyGame] this](/img/7c/adc13c0c87ca31c8581d68e6f21363.jpg)
[pyGame] this "groundhog" game is going to be popular (come on, come on)

LabVIEW改变Point ROI Overlay的形状或颜色

In the month of safety production, Huangpu launched a publicity campaign for gas safety in shops

【Pygame小游戏】这款经典的炸弹人超能游戏上线,你爱了嘛?(附源码)
随机推荐
关于优化API接口响应速度
How to handle the database query error with Emoji expression in Typecho- Xingze V Club
[auto reply or remind assistant] Mom doesn't have to worry about me missing messages any more (10 Line Code Series)
[appearance detection artifact] come on, please show me your unique skill (is this appearance worthy of the audience?)
Basic operation of OpenCV actual combat image: this effect amazed everyone (with code analysis)
长投学堂开户安全吗?靠谱吗?
【AI出牌器】第一次见这么“刺激”的斗地主,胜率高的关键因素竟是......
LabVIEW获取IMAQ Get Last Event坐标
LabVIEW pictures look bright or dark after being cast from 16 bits to 8 bits
LabVIEW get IMAQ get last event coordinates
Leetcode-209 minimum length subarray
When leaving the web page, the website displays 404 Not found- starze V Club
Unity script cannot display Chinese comments of C # source code or the script created by vs does not have comments of C # source code
LabVIEW uses the visa read function to read USB interrupt data
[pyGame games] here it is. This Gobang game is super A. share it with your friends~
Binary tree pruning
LabVIEW programming specification
Shell Sort
Pseudo static setting of Typecho - starze V Club
Collection delete element technique removeif