How The Self-Retweeting Tweet Worked: Cross-Site Scripting (XSS) and Twitter

Tom Scott
Tom Scott
2.3 میلیون بار بازدید - 10 سال پیش -
http://tomscott.com - Twitter: tomscott - It should never have happened. Defending against cross-site scripting (XSS) attacks is Web Security 101. And yet, today, there was a self-retweeting tweet that hit a heck of a lot of people - anyone using Tweetdeck, Twitter's "professional" client. How did it work? Time to break down the code. (Remember the old Myspace worms? They worked the same way.)

THE SELF-RETWEETING TWEET: Twitter: 476764918763749376
10 سال پیش در تاریخ 1393/03/21 منتشر شده است.
2,315,534 بـار بازدید شده
... بیشتر