{"id":43,"date":"2009-09-02T14:48:52","date_gmt":"2009-09-02T09:18:52","guid":{"rendered":"https:\/\/www.ibeehosting.com\/blog\/how-to-avoid-script-injections-xss-and-css-attacks.html"},"modified":"2015-07-16T14:13:15","modified_gmt":"2015-07-16T08:43:15","slug":"how-to-avoid-script-injections-xss-and-css-attacks","status":"publish","type":"post","link":"https:\/\/www.ibeehosting.com\/blog\/how-to-avoid-script-injections-xss-and-css-attacks.html","title":{"rendered":"How to avoid script injections, XSS and CSS attacks?"},"content":{"rendered":"<p>Did you ever experienced anytime that your website is acting weird by loading other website URL&#8217;s like http:\/\/imeanit.cn:8080 when you type your website address in the browser? if so, your website is compromised !!<\/p>\n<p><strong>Type 1:<\/strong><\/p>\n<p>Compromised? my website? YES, it is, from past one year hackers are targeting the medium and small web hosting companies using exploits and injecting worms into the servers. The virus will deface all the websites index pages in the server by leaving no trace. Solution is to secure the server, clean the server with any good antivirus. sometimes virus will be injected from the your computers also into the website. If your computer is affected by a malware, it will monitor the FTP traffic and send reports to the hacker about your FTP and other sensitive information, Hackers will use bots to inject third party links into others websites using the hacked FTP information. MHACK is the Application which were used earlier to deface many websites.<\/p>\n<p><strong>Type 2:<\/strong><\/p>\n<p>When you allow Special Characters insert into your contact, search or any web based forms in your website, that is it, your website is vulnerable for CSS attacks. It is important to understand the HTML tags that are most commonly used to carry out code insertion tags. However, it is important to note that alternative \u201cin-line\u201d scripting elements may be used and interpreted by the current generation of web browsers, such as <em>javascript:alert(&#8216;executing script&#8217;)<\/em><\/p>\n<p>Beware of these XSS, CSS and Script injections into your websites.<\/p>\n<p><strong>Some of the tips to avoid script injections:<\/strong><\/p>\n<p>Do not click on any executable files received from unknown persons, Secure your computer using good antivirus. monitor outgoing traffic and incoming traffic, enable firewall in your local server, do not take shared internet connection from small vendors.<\/p>\n<p>More Information: <a href=\"http:\/\/www.owasp.org\/index.php\/Testing_for_Cross_site_scripting\" rel=\"nofollow\">http:\/\/www.owasp.org\/index.php\/Testing_for_Cross_site_scripting<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Did you ever experienced anytime that your website is acting weird by loading other website URL&#8217;s like http:\/\/imeanit.cn:8080 when you type your website address in the browser? if so, your website is compromised !! Type 1: Compromised? my website? YES, it is, from past one year hackers are targeting the medium and small web hosting [&hellip;]<\/p>\n","protected":false},"author":8,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":[],"categories":[18],"tags":[20,19,21],"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v15.0 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.ibeehosting.com\/blog\/how-to-avoid-script-injections-xss-and-css-attacks.html\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"How to avoid script injections, XSS and CSS attacks?\" \/>\n<meta property=\"og:description\" content=\"Did you ever experienced anytime that your website is acting weird by loading other website URL&#8217;s like http:\/\/imeanit.cn:8080 when you type your website address in the browser? if so, your website is compromised !! Type 1: Compromised? my website? YES, it is, from past one year hackers are targeting the medium and small web hosting [&hellip;]\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.ibeehosting.com\/blog\/how-to-avoid-script-injections-xss-and-css-attacks.html\" \/>\n<meta property=\"og:site_name\" content=\"The Real Dedicated Hosting Blog\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/ibeehosting\" \/>\n<meta property=\"article:published_time\" content=\"2009-09-02T09:18:52+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2015-07-16T08:43:15+00:00\" \/>\n<meta name=\"twitter:card\" content=\"summary\" \/>\n<meta name=\"twitter:creator\" content=\"@ibeehosting\" \/>\n<meta name=\"twitter:site\" content=\"@ibeehosting\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.ibeehosting.com\/blog\/#website\",\"url\":\"https:\/\/www.ibeehosting.com\/blog\/\",\"name\":\"The Real Dedicated Hosting Blog\",\"description\":\"Performance, Scalability and Engineering\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":\"https:\/\/www.ibeehosting.com\/blog\/?s={search_term_string}\",\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.ibeehosting.com\/blog\/how-to-avoid-script-injections-xss-and-css-attacks.html#webpage\",\"url\":\"https:\/\/www.ibeehosting.com\/blog\/how-to-avoid-script-injections-xss-and-css-attacks.html\",\"name\":\"How to avoid script injections, XSS and CSS attacks?\",\"isPartOf\":{\"@id\":\"https:\/\/www.ibeehosting.com\/blog\/#website\"},\"datePublished\":\"2009-09-02T09:18:52+00:00\",\"dateModified\":\"2015-07-16T08:43:15+00:00\",\"author\":{\"@id\":\"https:\/\/www.ibeehosting.com\/blog\/#\/schema\/person\/944ca2b449d2f91b47c76bb5fc627eb5\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.ibeehosting.com\/blog\/how-to-avoid-script-injections-xss-and-css-attacks.html\"]}]},{\"@type\":\"Person\",\"@id\":\"https:\/\/www.ibeehosting.com\/blog\/#\/schema\/person\/944ca2b449d2f91b47c76bb5fc627eb5\",\"name\":\"Pavan Kandulapati\",\"image\":{\"@type\":\"ImageObject\",\"@id\":\"https:\/\/www.ibeehosting.com\/blog\/#personlogo\",\"inLanguage\":\"en-US\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/d86d6f07a67cc7a01b5a510d813a850d?s=96&d=mm&r=g\",\"caption\":\"Pavan Kandulapati\"},\"description\":\"Pavan Kumar (Pawanaidu) is a SEO Experts and Internet Marketing Specialist who has been a part of the SEO field since 2005. More info about Pavan you can check Google Profile, Facebook , Twitter\"}]}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","amp_enabled":true,"_links":{"self":[{"href":"https:\/\/www.ibeehosting.com\/blog\/wp-json\/wp\/v2\/posts\/43"}],"collection":[{"href":"https:\/\/www.ibeehosting.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.ibeehosting.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.ibeehosting.com\/blog\/wp-json\/wp\/v2\/users\/8"}],"replies":[{"embeddable":true,"href":"https:\/\/www.ibeehosting.com\/blog\/wp-json\/wp\/v2\/comments?post=43"}],"version-history":[{"count":0,"href":"https:\/\/www.ibeehosting.com\/blog\/wp-json\/wp\/v2\/posts\/43\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.ibeehosting.com\/blog\/wp-json\/wp\/v2\/media?parent=43"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.ibeehosting.com\/blog\/wp-json\/wp\/v2\/categories?post=43"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.ibeehosting.com\/blog\/wp-json\/wp\/v2\/tags?post=43"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}