Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
Web Application Security
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
XS(T) attack variants which can, in some cases, eliminate the need for TRACE Jan 26 2003 01:25PM
Amit Klein (Amit Klein SanctumInc com)
Hi

Putting aside issues such as the importance of XST, the signal-to-noise
ratio in WhiteHat's paper, the importance of XSS at large, and "whose
fault is it", I would like to show two variants of the XST attacks,
which do not require TRACE support at the server (therefore technically
perhaps d...

[ more ]  





 

Privacy Statement
Copyright 2009, SecurityFocus