International Research journal of Management Science and Technology

  ISSN 2250 - 1959 (online) ISSN 2348 - 9367 (Print) New DOI : 10.32804/IRJMST

Impact Factor* - 6.2311


**Need Help in Content editing, Data Analysis.

Research Gateway

Adv For Editing Content

   No of Download : 116    Submit Your Rating     Cite This   Download        Certificate

HYPERTEXT MAKEUP LANGUAGE -HTML INJECTION ATTACK BY STATIC OR DYNAMIC HTML WEBSITE

    1 Author(s):  SURAJ TOMAR

Vol -  5, Issue- 9 ,         Page(s) : 65 - 69  (2014 ) DOI : https://doi.org/10.32804/IRJMST

Abstract

we researched HTML is not secured using any dynamic connectivity because HTML Injection also known as Cross Site Scripting. It is a security vulnerability that allows an attacker to inject HTML code into web pages that are viewed by other users.HTML injection is a type of injection issue that occurs when a user is able to control an input point and is able to inject arbitrary HTML code into a vulnerable web page. This vulnerability can have many consequences, like disclosure of a user''s session cookies that could be used to impersonate the victim, or, more generally, it can allow the attacker to modify the page content seen by the victims.

  1. CERT Advisory on Malicious HTML Tags: http://www.cert.org/CA-2000-02.html
  2. OWASP's XSS (Cross Site Scripting) Prevention Cheat Sheet
  3. OWASP Guide to Building Secure Web Applications and Web Services, Chapter 8: Data Validation
  4. HTML Code Injection and Cross-site Scripting: http://www.technicalinfo.net/attack/CSS.html

*Contents are provided by Authors of articles. Please contact us if you having any query.






Bank Details