An Exploitation of Cross-Site Scripting Vulnerability on Web Applications

Authors

  • Mustafa A. Abo Mhara Faculty of Economics and Political Science, Bani Waleed University, Libya
  • Abdalla A. Abdarrahman Higher Institute of Engineering Technologies Baniwalid, Libya
  • Suleiman O. Barnous Higher Institute of Engineering Technologies Baniwalid, Libya
  • Adel S. Elashheb College of Civil Aviation and Meteorology Espiaa, libya
  • Haytham F. Dhaw Higher Institute of Medical Technology Baniwalid, Libya

Keywords:

Web Applications, Cross-Site Scripting (XSS) Attack, JavaScript

Abstract

Attacks on web applications are increasing quickly with the advent of new technologies. Cross-Site Scripting (XSS) is a known vulnerability that exist in web applications. Attackers can exploit XSS to access web browser resources, such as cookies, credentials, and other sensitive information by injecting malicious client-side scripts into a website application. These scripts are then executed by users as they browse the site. This paper introduces XSS attacks with some examples of popular attacks. Methodologies for detecting and preventing cross-site scripting vulnerabilities are established and summarized by proposing a model for exploiting XSS vulnerabilities through reflected and stored attacks. The subsequent results are discussed and countermeasures are carried out to detect and prevent XSS vulnerabilities.

Downloads

Download data is not yet available.

Downloads

Published

2024-08-28

How to Cite

[1]
M. Abo Mhara, A. Abdarrahman, S. . Barnous, A. . Elashheb, and H. Dhaw, “An Exploitation of Cross-Site Scripting Vulnerability on Web Applications”, AJST, vol. 1, no. 1, pp. 1–9, Aug. 2024.