Latest XSS Widget

Posted by: Joy  :  Category: Linker

Cute Pink Girl
Shared by: switpotato
Created: July 2009
Status : Filtered (August 2009)

Here’s another more friendster widget, that can serve as a vessel to inject your Cross-site Scripting (XSS) vector in your profile. Just follow the instructions carefully.

Install the widget in your profile:
Click Here

You will be forced to log in to your Friendster account if you’re not currently logged in.

Insert your XSS vector in your profile:
After adding the application, you will then be redirected to your profile page. If the notification box saying the app was successfully added to your profile appears, it means the widget is now active. If that is the case, click the Edit Profile button in your control panel.

Insert the complete link of your file in the part of the code below where it is required.

A. If your file is [wikipop]Cascading Stylesheets[/wikipop] (CSS), use the code below and paste anywhere in your About Me or Who I Want to Meet sections.

<a href="http://switangell.com/" title="LINK OF YOUR CSS FILE"><img src="http://switangell.com/xss/nica.gif" alt="Widget provided by Friendster 101 for Dummies."></a>

B. If your file is a [wikipop]JavaScript[/wikipop] (JS), use the code below instead and paste anywhere in your About Me or Who I Want to Meet sections.

<a href="http://switangell.com/" title="LINK OF YOUR JS FILE"><img src="http://switangell.com/xss/angell.gif" alt="Widget provided by Friendster 101 for Dummies."></a>

Check your codes:
After hitting the save button on your edit profile page, go to your profile to see if your codes worked. If yes, don’t touch your application again. If it didn’t work, check your codes for errors. If you are sure your codes are ok, just ask for help by posting a comment.

Message from Friendster 101 for Dummies:
If you are going to post any of our contents on other sites, kindly notify us and tell us where you posted our contents, so in case you need help explaining, we could visit the site and help you out.
Source: http://blogs.angelldeville.com/2009/08/latest-xss-widget


12 Responses to “Latest XSS Widget”

Pages: « 1 [2] Show All

  1. 11
    sandra king Says:

    application not found…thats what it says…whats the problem???

  2. 12
    makinig Says:

    pa nu register?

Pages: « 1 [2] Show All

Leave a Reply

Comment moderation is enabled. Your comment may take some time to appear.