Stored XSS on popular Web statistics framework Statcounter. Log yourselves out of Statcounter and if possible disable JavaScript for the domain (possible in Chrome, not sure about Firefox)… Will give more details when Statcounter fixes it. The only reason I am saying it here is because my Statcounter logs just started popping alert boxes!
-
Recent Posts
Recent Comments
- OWASP Top 10 for ASP.net Core - Cross-Site Scripting (XSS) - Dot Net Core Tutorials on Bypassing Chrome’s Anti-XSS filter
- Set X-XSS-Protection in ASP.net Core - Dot Net Core Tutorials on Bypassing Chrome’s Anti-XSS filter
- ProspectiveStudent on Why you should apply to Stony Brook if you want to pursue a PhD in computer security and privacy
- Ikram on Why you should apply to Stony Brook if you want to pursue a PhD in computer security and privacy
- I-wear-an-anonymous-badge-at-CCS on Poor reasons to reject a computer security paper, Part 1
Archives
Categories
Meta