Description: A lot of times i have seen Cross-site scripting vulnerabilities classified as low impact or not significant. Thus, this time i want to show you how an attacker can get administration privileges through a simple XSS. A couple of months ago i discovered an XSS vulnerability affecting the uk website of ... http://security-obscurity.blogspot.it/2012/05/from-xss-to-nt-authority.html
Follow Me: https://twitter.com/#!/SecObscurity
Tags: cross-site scripting , xss , java , applet , attack , metasploit , set , social engineering toolkit , meterpreter , nt authority , windows , hacking ,
Disclaimer: We are a infosec video aggregator and this video is linked from an external website. The original author may be different from the user re-posting/linking it here. Please do not assume the authors to be same without verifying.
Awesome video :) if an antivirus and firewall is turned on can we still get a meterpreter session?
Nicely done my friend! this demo should be shown with every web application security course :)
Nice ... I loved The Idea <3
Amazing ! :)
@Cybersaint: Thank you, i don't know. I haven't tested.
@SecurityTube_Bot: Thank you intelligent bot :)
@Ozsiix, @tinitee: Thank you for the compliments.