When I was browsing Lain‘s Blog, I saw a web based tool to scan your web application vulnerability of XSS and HTML Injection developed by SEO Egghead. Although it’s old, but maybe it’s still useful.
Here is the review :
“This little tool scans a page for common XSS / HTML injection vulnerabilities.
Please note: This tool is intended to scan your site for potential HTML-injection. If I see bulk-requests, your IP may be banned.” This is how Jaimie Sirovich said, so use this tool and obey the rules. I’ve tried this XSS / HTML Injection Scanner on a random site, and indeed this XSS / HTML Injection scanner founds a XSS vulnerability on that site. Don’t believe me? Just try it yourself here :
Thanks
Zoiz




[...] is the review : (more…) [Read the rest on (it)gossips network: Zoiz] Related PostsWeb Based XSS / HTML Injection [...]
nice, isn’t it ?