A Cross-Site Scripting (XSS) attack involves injecting malicious scripts, typically JavaScript, into web pages that are later viewed by other users. This attack exploits vulnerabilities in web applications that fail to properly validate or sanitize user inputs. When a victim visits the compromised web page, the malicious script executes in their browser, potentially stealing sensitive data, hijacking sessions, or defacing websites. XSS is categorized into three types: reflected, stored, and DOM-based. Stored XSS is particularly dangerous because the malicious script is permanently stored on the server and served to multiple users. For instance, attackers might inject a script into a comment section of a blog, and every user viewing the comments becomes a victim. Proper input validation, output encoding, and Content Security Policy (CSP) implementation are essential defenses against XSS. Why Other Options Are Incorrect :
Following a recommendation by the National Financial Reporting Authority, which investor group was directed by SEBI in August 2024 to value their AT-1 b...
Which state police recently launched the digital platform 'Trinetra' App 2.0?
Consider the following statements about Kisan Vikas Patra (KVP):
1. The interest rate is 7.5% per annum.
2. The minimum deposit is ₹1000...
Who was the chief guest at the 75th Republic Day Celebration in 2024?
How is Gross Value Added (GVA) calculated?
Under the Banking Regulation Act, 1934, The Reserve Bank was established in 1935 with the capital of Rs. ____?
Which market does the IS curve represent the equilibrium in?
Recently _____ has won the ‘Promising Investor of the Year-2024’ award.
Which was the earliest urban civilization in India?
The book Poverty and Un-British Rule in India, which examines the economic impact of British colonialism, was written by: