Get a Pentest and security assessment of your IT network.

News

OWASP A10-Unvalidated Redirects and Forwards

This vulnerability occurs when an application accepts untrusted input that has an URL value without sanitizing it. Without proper validation, attackers can redirect victims to phishing or malware sites, or use forwards to use unauthorized pages. Developers can prevent the weakness by approving client input and confirming the URL being referred to is really an endorsed target URL. For every use, distinguish if the objective URL is incorporated into any parameter values. Provided that this is true, if the. objective URL isnt approved against a white list, you are vulnerable.”]

Source: https://gbhackers.com/owasp-a10-unvalidated-redirects-forwards/

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

BlackEnergy exploits recently fixed flaws in Siemens WinCC

News

Google Chrome will block code injection from third-party software within 14 months