Security training
random stuff

1. Cross-Site Request Forgery Attack

1 CSRF Attack on POST Services

2 Countermeasures

3 Review and Summary

2. Cross-Site Scripting Attack

1 Introduction

2 How XSS Attack Works

3 Attack 1 Add Friend

4 Attack 2 Modify Profile

5 Writing Self-Propagating XSS Worm

6 Countermeasures

7 CSP Content Security Policy

8 Attack Generalization

9 Review and Summary

3. SQL Injection Attack

1 Introduction

2 Brief Tutorial on SQL

3 SQL Injection Against SELECT Statement

4 Modify Database Using SQL Injection

5 Similarity with Other Code Injection Attacks

6 Countermeasure Prepared Statement

7 Review Questions and Summary

4. Clickjacking Attack

1 Introduction

2 Iframe and its Properties

3 Clickjacking Attacks Using Transparent Iframe

4 Clickjacking Attacks Using Small-Size Iframe

5 Countermeasures

6 Iframe's Security Features

7 Summary

all posts

©2022 MDXBlog. All rights reserved.