Wednesday, Sep 08th

Last update04:59:55 AM GMT

You are here:: Security Knowledge Base Security Knowledge Sharing Security tutorials

Security tutorials

Rules of Evidence - Digital Forensics Tools and how to

E-mail Print PDF
( 0 Votes )

Searching for clues? Here's how to investigate and use digital forensics and e-discovery tools

Digital forensics tools are intended to help security staff, law enforcement and legal investigators identify, collect, preserve and examine data on computer hard drives related to inappropriate and illegal activity, such as cybercrime, e-mail and Internet abuse, fraud, financial mismanagement, unauthorized disclosure of corporate information, intellectual property theft, and so on. Increasingly, these tools are also being applied to e-discovery efforts related to civil litigation and regulatory compliance.
Last Updated on Saturday, February 20 2010

Cross Site Scripting attack Demo

E-mail Print PDF
( 1 Vote )
User Rating: / 1
PoorBest 

Cross-Site Scripting AttackCross-site scripting ('XSS' or 'CSS') is an attack that takes advantage of a web site vulnerability in which the site displays content that includes un-sanitized user-provided data. For example, an attacker might place a hyperlink with an embedded malicious script into an online discussion forum. The purpose of the malicious script is to attack other forum users who happen to select the hyperlink. For example it could copy user cookies and then send those cookies to the attacker.

This is a controversial demo video by Brial Contos, CISSP from  IMPERVA. It takes you through each and every step involved to find xss/css vulnerability in a webpage and showcases some of the basic steps that you need to know.

 

You need to a flashplayer enabled browser to view this video]

Last Updated on Tuesday, December 15 2009

Who's Online

0 users and 10 guests online

Security Events

No current events.