Cross-Site Scripting (XSS)

Job ID: 33189884

Budget: £20 – £250 GBP

a)Using an appropriate tool demonstrate how Cross-Site Scripting (XSS) functions. You must
compile a report, including screenshots of your work and clear instructions on how to reproduce
it, including the following:
• Vulnerabilities that can be used to develop a XSS attack.
• An example of how a file upload could be used to launch an XSS attack.
• An example of Reflected XSS.
• An example of Stored XSS.
• Provide at least TWO examples of how the attacker may utilise XSS (by any method
above) to their benefit. Clearly explain the lifecyclec of both attacks, from identification of
the vulnerability, to achieving the final goal of the exploit (and state explicitly what that
goal is).
Remember that your aim is to provide a report that demonstrates your understanding and
allows the reviewer to reproduce your attack, so be clear in your write up. You must provide
screenshots demonstrating your own work, and cite all sources that contribute to it.

b
Related categories: Penetration Testing