An Effective Implementation of HTML Injection
Journal: Engineering and Scientific International Journal (Vol.1, No. 1)Publication Date: 2014-12-10
Authors : Bharat Bhatia; Charu Sharma;
Page : 1-4
Keywords : HTML; JSP; PHP; E-commerce; social networking;
Abstract
HTML injection is an attack that is closely related to Cross-site Scripting (XSS). The difference is not in the vulnerability, but in the type of attack that leverages the vulnerability. Hypertext Markup Language (HTML) injection, also sometimes referred to as virtual defacement, is an attack on a user made possible by an injection vulnerability in a web application. When an application does not properly handle user supplied data, an attacker can supply valid HTML, typically via a parameter value, and inject their own content into the page. This attack is typically used in conjunction with some form of social engineering, as the attack is exploiting a code-based vulnerability and a user's trust.
Other Latest Articles
- Analysis of Key Management Schemes in Dynamic Wireless Sensor Networks
- Study of Automated and Real-time Indicators for the Management of Global Software Development Projects
- QoS Routing in Multicast Networks Based on Imperialism Competition Algorithm
- The Innocent Perpetrators: Reflectors and Reflection Attacks
- A National Model to Supervise on Virtual Banking Systems through the Bank 2.0 Approach
Last modified: 2015-02-01 18:07:44