摘要: The most common type of XSS (Cross-Site Scripting) is source-based. It means that injected JavaScript code comes from server side to execute in client 阅读全文
posted @ 2018-06-04 17:05 blacksunny 阅读(905) 评论(0) 推荐(0) 编辑
摘要: A file upload is a great opportunity to XSS an application. User restricted area with an uploaded profile picture is everywhere, providing more chance 阅读全文
posted @ 2018-06-04 17:00 blacksunny 阅读(277) 评论(0) 推荐(0) 编辑