NoCrackingZone
Share Information Security Knowledge | Panduan Keamanan Informasi

Main menu

Skip to content
  • Home
  • SHaKE
  • About

Tag Archives: cross-site scripting

Post navigation

← Older posts

Open source bugs have soared in the past year

Posted on March 16, 2020 by nocrackingzone

Open source bugs have skyrocketed, according to a report from WhiteSource, with XSS flaws account for a quarter of those bugs.

Posted in Berita Keamanan Informasi | Tagged bugs, Common Vulnerability Scoring System, cross-site scripting, CVSS, open source bugs, open-source, Security threats, software bugs, Vulnerability, WhiteSource | Leave a comment |

XSS plugin vulnerabilities plague WordPress users

Posted on March 3, 2020 by nocrackingzone

Thousands of active WordPress plugins have been hit with a swathe of XSS vulnerabilities that could give attackers complete control of the site.

Posted in Berita Keamanan Informasi | Tagged Async, cross-site scripting, Flexible Checkout Fields, JavaScript, Plugins, Security threats, Vulnerability, WooCommerce, Wordpress, WordPress plugin, XSS | Leave a comment |

Cookie-nabbing app could have served users side helping of XSS

Posted on February 14, 2020 by nocrackingzone

A popular GDPR compliance WordPress plugin vendor has patched a flaw that rendered both site visitors and admins vulnerable to XSS attacks.

Posted in Berita Keamanan Informasi | Tagged Cookie consent, cookies, cross-site scripting, cve, GDPR, GDPR Cookie Consent plugin, Ninja Technologies, Security threats, wordfence, Wordpress, XSS | Leave a comment |

No surprises in the top 25 most dangerous software errors

Posted on September 19, 2019 by nocrackingzone

An in-depth study of reported bugs has produced a list of the top 25 bug categories in software today – with some old familiar names topping the list.

Posted in Berita Keamanan Informasi | Tagged Buffer flaws, Common Vulnerabilities and Exposures, Common Weakness Enumeration, cross-site scripting, CVEs, CWE, mitre, security bugs, Security threats, Vulnerability, XSS | Leave a comment |

Serious flaws in six printer brands discovered, fixed

Posted on August 15, 2019 by nocrackingzone

There are many ways to compromise company data, but IT teams often overlook one of the most serious: the humble printer.

Posted in Berita Keamanan Informasi | Tagged Brother, cross-site scripting, Denial of Service, flaws, hardware security, Kyocera, Lexmark, printer security, printers, remote code execution, Ricoh, Security threats, Vulnerability, Xerox | Leave a comment |

Google Chrome is ditching its XSS detection tool

Posted on July 18, 2019 by nocrackingzone

Google’s throwing in the towel on XSS Auditor and putting its trust in Trusted Types instead.

Posted in Berita Keamanan Informasi | Tagged cross-site scripting, Google, Google Chrome, Security threats, Trusted Types, Uncategorized, Web Browsers, XSS, XSS Auditor | Leave a comment |

Flaw in popular PDF creation library enabled remote code execution

Posted on March 21, 2019 by nocrackingzone

A researcher has discovered a high-severity bug in a popular PHP library used for creating PDFs.

Posted in Berita Keamanan Informasi | Tagged cross-site scripting, deserialization, PHP, PHP library, Polict, rce, remote code execution, Security threats, TCPDF, XSS | Leave a comment |

WordPress 5.1.1 patches dangerous XSS vulnerability

Posted on March 18, 2019 by nocrackingzone

Researchers have offered more detail on a recently patched vulnerability that would allow an attacker to take over a WordPress site.

Posted in Berita Keamanan Informasi | Tagged Cross Site Request Forgery, cross-site scripting, CSRF, Security threats, Vulnerability, Wordpress, XSS | Leave a comment |

Update now! WordPress 5.0.1 release fixes seven flaws

Posted on December 14, 2018 by nocrackingzone

Don’t delay, update your WordPress website today.

Posted in Berita Keamanan Informasi | Tagged Bebo, cross-site scripting, Patching, PHP unserialization, RIPS Technologies, Security threats, Vulnerability, Wordpress, WordPress 5.0, XSS | Leave a comment |

PayPal patches potential payment-stealing vulnerability

Posted on August 28, 2015 by nocrackingzone

An XSS hole could apparently have allowed a crook to pop up a realistic PayPal “pay page” and steal the victim’s card data. Paul Ducklin takes a look…

Posted in Berita Keamanan Informasi | Tagged cross-site scripting, Data loss, Featured, Hegazy, PayPal, Privacy, Vulnerability, XSS, Zigoo0 | Leave a comment |

Post navigation

← Older posts
January 2026
M T W T F S S
« Jun    
 1234
567891011
12131415161718
19202122232425
262728293031  
Recent Posts
  • Google joins Apple in limiting web certificates to one year
  • iOS 14 flags TikTok, 53 other apps spying on iPhone clipboards
  • Beware “secure DNS” scam targeting website owners and bloggers
  • Satori IoT botnet author sentenced to 13 months in prison
  • Monday review – the hot 10 stories of the week
Archives
  • June 2020
  • May 2020
  • April 2020
  • March 2020
  • February 2020
  • January 2020
  • December 2019
  • November 2019
  • October 2019
  • September 2019
  • August 2019
  • July 2019
  • June 2019
  • May 2019
  • April 2019
  • March 2019
  • February 2019
  • January 2019
  • December 2018
  • November 2018
  • October 2018
  • September 2018
  • August 2018
  • July 2018
  • June 2018
  • May 2018
  • April 2018
  • March 2018
  • November 2015
  • October 2015
  • September 2015
  • August 2015
  • July 2015
  • June 2015
  • May 2015
  • April 2015
  • March 2015
  • February 2015
  • January 2015
  • December 2014
  • November 2014
  • October 2014
  • September 2014
  • August 2014
  • July 2014
  • June 2014
  • May 2014
  • April 2014
  • February 2014
  • October 2013
  • August 2013
  • April 2013
  • January 2013
  • December 2012
  • December 1
Categories
  • Berita Keamanan Informasi
  • Isu Populer dan Solusi Keamanan Informasi
  • Pengamanan Resource dari Ancaman Keamanan Informasi
RSS Berita ID-SIRTII/CC
© NoCrackingZone