IBEE Solutions Web Hosting Blog
 
  • Dedicated Hosting
  • Domain Names
  • Google Apps
  • IBEE Hosting Home
  • Web Hosting

Tag Archives: 

script injections

How to avoid script injections, XSS and CSS attacks?

Posted on  September 2, 2009  by  Pavan Kandulapati

Categories: Security
Tags: CSS attacks, script injections, XSS attacks

Did you ever experienced anytime that your website is acting wiered by loading other website URL’s like (http://imeanit.cn:8080) when you type your website address in the browser? if so, your website is compromised !!

Type 1:

Compromised? my website? YES, it is, from past one year hackers are targetting the medium and small web hosting companies using exploits and injecting worms into the servers. The virus will deface all the websites index pages in the server by leaving no trace. Solution is to secure the server, clean the server with any good antivirus. sometimes virus will be injected from the your computers also into the website. If your computer is affected by a malware, it will monitor the FTP traffic and send reports to the hacker about your FTP and other sensitive information, Hackers will use bots to inject thrid party links into others websites using the hacked FTP information. MHACK is the Application which were used earlier to deface many websites.

Type 2:

When you allow Special Characters insert into your contact, search or any web based forms in your website, that is it, your website is vulnerable for CSS attacks. It is important to understand the HTML tags that are most commonly used to carry out code insertion tags. However, it is important to note that alternative “in-line” scripting elements may be used and interpreted by the current generation of web browsers, such as javascript:alert(‘executing script’)

Beware of these XSS, CSS and Script injections into your websites.

Some of the tips to avoid script injections:

Do not click on any executable files received from unknown persons, Secure your computer using good antivirus. monitor outgoing traffic and incoming traffc, enable firewall in your local server, do not take shared internet connection from small vendors.

More Information: http://www.owasp.org/index.php/Testing_for_Cross_site_scripting

0 Comment
  • RSSRSS Feed
  • Categories

    • Blogging Tips (1)
    • Domain-Names (15)
    • General News (16)
    • Google (21)
    • Mobile Apps (4)
    • Offers and Promos (3)
    • Security (3)
    • SEO (32)
    • Social Media (3)
      • Facebook (3)
    • Web Design (9)
    • Web Development (4)
    • Web Hosting (39)
      • Control Panels (2)
      • Microsoft (5)
        • Windows servers (1)
    • Wordpress (1)
  • Tags

    blacklisted in google Corporate SEO CSS attacks Directory submission Domain-Names domain name domain registration expired domains free windows software FTP Google Apps Google browser Google Wave hosting company hosting packages hosting services Hostspark Host Spark IE Linux Hosting Microsoft Apps Microsoft webspark on-page restore MSSQL restore SQL database script injections Search engine optimization SEO SEO process SEO services SEO Strategy SQL 2005 SSRS Hosting templates unlimited hosting upload website Web Design webhost Webhosting Web Hosting website may harm in google search results webspark what is seo windows explorer XSS attacks
  • Archives

    • March 2013 (1)
    • January 2013 (1)
    • December 2011 (1)
    • July 2011 (1)
    • June 2011 (2)
    • April 2011 (3)
    • March 2011 (8)
    • February 2011 (2)
    • January 2011 (1)
    • December 2010 (3)
    • November 2010 (7)
    • October 2010 (1)
    • September 2010 (3)
    • August 2010 (2)
    • July 2010 (7)
    • June 2010 (4)
    • May 2010 (4)
    • April 2010 (4)
    • March 2010 (5)
    • February 2010 (7)
    • January 2010 (3)
    • December 2009 (4)
    • November 2009 (4)
    • October 2009 (3)
    • September 2009 (7)
    • January 2009 (1)
    • January 2008 (1)
    • December 2007 (28)
  • Resources

    • Cloud Computing
    • Free Anti Malware tool
    • Geeks From India
    • Google Apps
    • Telugu and Hindi Songs
Copyrights © 2010. All Rights Reserved.
IBEE Solutions