Copywriters Board
Forum Rules
Go Back   Copywriters Board > Discussion Forums > Off-Topic Discussion
Reload this Page Cross-Site-Scripting
Off-Topic Discussion Topics other than copywriting or marketing. Can't find a forum for your topic? Post it here. No flaming!

Notices
Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink) Old
Junior Member
David Wilkinson is on a distinguished road
 
David Wilkinson's Avatar
 
Posts: 30
Join Date: Jul 2008
Location: Ninja Hideout
Rep Power: 0
Friends: 5
Default Cross-Site-Scripting - 07-23-2008, 09:24 AM

More of a silly little question and a warning to others, but recently I've seen a number of attempted "attacks" on my squeezepage. By that, I mean people typing in JavaScript injection codes into the name and e-mail boxes on the squeeze page, with malicious intent.

On one occasion (I'm using GetResponse by the way, which saved me getting absolutely hammered here) the hacker/loser/jerk attempted to insert a JavaScript popup onto the squeeze thanks page which would have had the potential to mess up any cookies set by the site, by editing them from the user-end as they viewed the page.

It's making me kinda paranoid as the most recent attempt (the one I mentioned above) could have caused serious damage had I not been using a 3rd party autoresponder company who handle all subscriptions via PHP post/get commands.

I'm guessing however that order forms could be a potential target for such malicious people and am looking for advice. I figured I'd come here as opposed to the WF. Even though the Copywriter's Board is primarily full of... copywriters, you guys don't all have your heads stuck up your... um... well. You know where.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiReddit! Stumble this Post!Google Bookmark this Post!Share on Facebook Bookmark to Sphinn!Twit this!
Reply With Quote
  #2 (permalink) Old
Copywriter
Michel Fortin is on a distinguished road
 
Michel Fortin's Avatar
 
Posts: 2,659
Join Date: Mar 2003
Location: Ottawa, Ontario (Canada)
Rep Power: 10
Friends: 32
Send a message via ICQ to Michel Fortin Send a message via AIM to Michel Fortin Send a message via MSN to Michel Fortin Send a message via Yahoo to Michel Fortin Send a message via Skype™ to Michel Fortin
Default Re: Cross-Site-Scripting - 07-23-2008, 06:17 PM

I've been using script to ban specific IP addresses (it doesn't really ban, it just gives a die() message), and to ensure only scripts/code referrals on my domains get executed. Can't remember the script name, but if you Google around, I'm sure you'll find it.


Michel Fortin

FREE One-Hour Video Tutorial! Discover how to make money online with any business in just four simple steps. Free video shows you how. Click here to watch this video »
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiReddit! Stumble this Post!Google Bookmark this Post!Share on Facebook Bookmark to Sphinn!Twit this!
Reply With Quote
  #3 (permalink) Old
Junior Member
David Wilkinson is on a distinguished road
 
David Wilkinson's Avatar
 
Posts: 30
Join Date: Jul 2008
Location: Ninja Hideout
Rep Power: 0
Friends: 5
Default Re: Cross-Site-Scripting - 07-23-2008, 06:23 PM

Would it be "Firewall Script" by any chance? Just checked it out and seems to do the job I require. Also seems to be a fairly new kid on the block but has taken off quite rapidly thanks to some smart blog-promoting. :P
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiReddit! Stumble this Post!Google Bookmark this Post!Share on Facebook Bookmark to Sphinn!Twit this!
Reply With Quote
  #4 (permalink) Old
Copywriter
Michel Fortin is on a distinguished road
 
Michel Fortin's Avatar
 
Posts: 2,659
Join Date: Mar 2003
Location: Ottawa, Ontario (Canada)
Rep Power: 10
Friends: 32
Send a message via ICQ to Michel Fortin Send a message via AIM to Michel Fortin Send a message via MSN to Michel Fortin Send a message via Yahoo to Michel Fortin Send a message via Skype™ to Michel Fortin
Default Re: Cross-Site-Scripting - 07-23-2008, 06:25 PM

Hmmm. Maybe. I know it something to prevent hotlinking, or something like that.

I can check....


Michel Fortin

FREE One-Hour Video Tutorial! Discover how to make money online with any business in just four simple steps. Free video shows you how. Click here to watch this video »
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiReddit! Stumble this Post!Google Bookmark this Post!Share on Facebook Bookmark to Sphinn!Twit this!
Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On
Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Help: Suggestions On Potential Up-Sells, Cross-Sells & Back-Ends for Real Estate madisonaveking2004 Critique Requests 5 07-22-2008 09:23 PM
What does the black cross with red sky mean for you? maxjohan Off-Topic Discussion 2 05-01-2008 12:38 PM
Cross Dressers enter here ;) and all regular dressers! Creative fossil Critique Requests 4 04-19-2008 03:13 AM
Testimonial do's/dont's: cross-product/service ok? Ken_Calhoun Copywriting Discussion 5 07-18-2006 09:22 PM



Copyright © 2003-2008 The Success Doctor, Inc. | SEO by vBSEO 3.2.0 RC8 1 2 3 4 5 6 7

Subscribe to The RSS Feed!