惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

Microsoft Security Blog
Microsoft Security Blog
J
Java Code Geeks
GbyAI
GbyAI
aimingoo的专栏
aimingoo的专栏
L
LangChain Blog
I
InfoQ
D
Docker
F
Fortinet All Blogs
Y
Y Combinator Blog
Martin Fowler
Martin Fowler
月光博客
月光博客
B
Blog
Engineering at Meta
Engineering at Meta
T
Tailwind CSS Blog
罗磊的独立博客
博客园_首页
G
Google Developers Blog
Stack Overflow Blog
Stack Overflow Blog
Recent Announcements
Recent Announcements
D
DataBreaches.Net
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
B
Blog RSS Feed
IT之家
IT之家
V
V2EX

Attack and Defense Labs

Cracking hashes in the JavaScript cloud with Ravan Performing DDoS attacks with HTML5 Cross Origin Requests & WebWorkers Port Scanning with HTML5 and JS-Recon RSnake, Web Security and a few beers HTML5 goodness at BlackHat Abu Dhabi this week Re-visiting JAVA De-serialization: It can't get any simpler than this !! XSSing client-side dynamic HTML includes by hiding HTML inside images and more Stealing entire Auto-Complete data in Google Chrome Chrome and Safari users open to stealth HTML5 AppCache attack HTML5 Security Articles and Live Demos Attacking JAVA Serialized Communication: BH EU 2010 Stroke triggered XSS and StrokeJacking New technique to be released for Attacking JAVA Serialized Communication at Black Hat Europe 2010 Bypassing CSRF protections with ClickJacking and HTTP Parameter Pollution Imposter and Whitepapers released The Goan NullCon Hangover The ClubHack 2009 hangover Stealing Databases and Setting Backdoors on Google Gears Breaking the Browser Sandbox and stealing some files Browser Phishing Explained The SecurityByte and OWASP AppSec Asia 2009 hangover Lust 2.0 talk @ SecurityByte and OWASP AppSec Asia 2009
Shell of the Future – Reverse Web Shell Handler for XSS E...
lava · 2010-07-20 · via Attack and Defense Labs
If you claim that "XSS is not a big deal" that means you never owned something by using it and that's your pr…