Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Collapse
Code Project
  1. Home
  2. Web Development
  3. XSS Attack

XSS Attack

Scheduled Pinned Locked Moved Web Development
c++databasecomtestingbeta-testing
5 Posts 2 Posters 0 Views 1 Watching
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • G Offline
    G Offline
    GauranG Shah
    wrote on last edited by
    #1

    Hi Guys, I am testing our site for the xss vulnerability. we have few text boxes, And what ever you fill in this text boxes is saved in the database and then it appears in some other page ( the page generates dynamically ). And When they generates the page dynamically they use htmlencode function to encode the value I have applied on text boxes. My doubt is, is there any way someone can do xss attack on that.. or is it safe enough ????

    [ Screen Capture ][ Tool Tip ][ Muliple Desktops ][Greeting Card ]

    M 1 Reply Last reply
    0
    • G GauranG Shah

      Hi Guys, I am testing our site for the xss vulnerability. we have few text boxes, And what ever you fill in this text boxes is saved in the database and then it appears in some other page ( the page generates dynamically ). And When they generates the page dynamically they use htmlencode function to encode the value I have applied on text boxes. My doubt is, is there any way someone can do xss attack on that.. or is it safe enough ????

      [ Screen Capture ][ Tool Tip ][ Muliple Desktops ][Greeting Card ]

      M Offline
      M Offline
      Marc Firth
      wrote on last edited by
      #2

      Good Security Book[^]

      Neonlight

      G 1 Reply Last reply
      0
      • M Marc Firth

        Good Security Book[^]

        Neonlight

        G Offline
        G Offline
        GauranG Shah
        wrote on last edited by
        #3

        Hey thanks for the book.:confused: Now onwards i will do the same thing. If Anyone will ask the question about java I will give him the ref to java book , if question is about vc++ give the reference to vc++ book. :suss: Would be helpful if you can answer the question else just leave it.

        [ Screen Capture ][ Tool Tip ][ Muliple Desktops ][Greeting Card ]

        M 2 Replies Last reply
        0
        • G GauranG Shah

          Hey thanks for the book.:confused: Now onwards i will do the same thing. If Anyone will ask the question about java I will give him the ref to java book , if question is about vc++ give the reference to vc++ book. :suss: Would be helpful if you can answer the question else just leave it.

          [ Screen Capture ][ Tool Tip ][ Muliple Desktops ][Greeting Card ]

          M Offline
          M Offline
          Marc Firth
          wrote on last edited by
          #4

          The reason I mentioned that book is because it really is the best one I've seen. It has excellent coverage of xss and how to prevent it. Chris Shiflett is possibly the top PHP security guy in the world (as far as I know). There is far too much on xss to write in post on a forum. Hence, I gave you the link to the book. You will find all the basics in there and it's easy to read. Well worth the money. You wanted an answer to your question: No. It may not be safe enough. But all the answers you need are in the aforementioned book.

          Neonlight

          1 Reply Last reply
          0
          • G GauranG Shah

            Hey thanks for the book.:confused: Now onwards i will do the same thing. If Anyone will ask the question about java I will give him the ref to java book , if question is about vc++ give the reference to vc++ book. :suss: Would be helpful if you can answer the question else just leave it.

            [ Screen Capture ][ Tool Tip ][ Muliple Desktops ][Greeting Card ]

            M Offline
            M Offline
            Marc Firth
            wrote on last edited by
            #5

            You could also see his site "shiflett.org" you might find what you need there.

            Neonlight

            1 Reply Last reply
            0
            Reply
            • Reply as topic
            Log in to reply
            • Oldest to Newest
            • Newest to Oldest
            • Most Votes


            • Login

            • Don't have an account? Register

            • Login or register to search.
            • First post
              Last post
            0
            • Categories
            • Recent
            • Tags
            • Popular
            • World
            • Users
            • Groups