Using Burp to Exploit XSS Injecting in to Tag Attributes | OWASP Top Ten | Burp suite

In our article "Exploiting XSS - Injecting in to Direct HTML" we started to explore the concept of exploiting XSS in various contexts by identifying the synt...

Using Burp to Exploit XSS   Injecting in to Tag Attributes | OWASP Top Ten | Burp suite
Technical Security
580 views β€’ Apr 13, 2020
Using Burp to Exploit XSS   Injecting in to Tag Attributes | OWASP Top Ten | Burp suite

About this video

In our article "Exploiting XSS - Injecting in to Direct HTML" we started to explore the concept of exploiting XSS in various contexts by identifying the syntactic context of the response. In this article we demonstrate some methods of modifying your input when injecting in to various Tag Attributes.

By modifying your input appropriately, you can help ensure that the JavaScript included in your payload is executed as intended.


The example uses a version of "Mutillidae" taken from OWASP's Broken Web Application Project.

Video Information

Views

580

Likes

4

Duration

3:30

Published

Apr 13, 2020

Related Trending Topics

LIVE TRENDS

Related trending topics. Click any trend to explore more videos.