Get a Pentest and security assessment of your IT network.

Cyber Security

Exclusive – Source Code Spoofing with HTML5 and the LRO Character

John Kurlak uses HTML5’s new JavaScript feature, history.replaceState() to replace the URL of the page with: [RLO] + “lmth.ecruos” When the browser rendered the new URL, the RLO character reversed the letters after it, making the browser display “source.html” in the address bar. When I went to view the source of the web page, my browser tried to view “source of ” .” instead (the characters are the ASCII representation of the hex codes used to represent the character) Then, I simply had to create “” and put my “fake” source code in it. It worked!

Source: https://thehackernews.com/2012/03/exclusive-source-code-spoofing-with.html

Related posts
Cyber Security

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

Cyber Security

Art of Twitter account hacking

Cyber Security

Alexa Eavesdropping Flub Re-Sparks Voice Assistant Privacy Debate

Cyber Security

Dan Geer, Richard Thieme on specialization in security