The Web Application Hacker’s Handbook Discovering and Exploiting Security Flaws


page. You can disable this behavior in the Advanced tab in Internet Options



Download 5,76 Mb.
Pdf ko'rish
bet853/875
Sana01.01.2022
Hajmi5,76 Mb.
#293004
1   ...   849   850   851   852   853   854   855   856   ...   875
Bog'liq
3794 1008 4334

page. You can disable this behavior in the Advanced tab in Internet Options.

Using Public Information

Because of the huge variety of web application technologies and components

in common use, you should frequently expect to encounter unusual messages

that you have not seen before, and that may not immediately indicate the

nature of the error that the application experienced. In this situation, you can

often obtain further information about the meaning of the message from vari-

ous public sources.

Often, an unusual error message is the result of a failure in a specific API.

Searching for the text of the message may lead you to the documentation for

this API or to developer forums and other locations where the same problem

is discussed.

Many applications employ third-party components to perform specific

common tasks, such as searches, shopping carts, and site feedback functions.

Any error messages that are generated by these components are likely to have

arisen in other applications, and to have been discussed elsewhere.

Some applications incorporate source code that is publicly available. By

searching for specific expressions which appear in unusual error messages,

you may actually discover the source code which implements the relevant

function. You can then review this to understand exactly what processing is

being performed on your input, and how you may be able to manipulate the

application to exploit a vulnerability.

HACK STEPS




Download 5,76 Mb.

Do'stlaringiz bilan baham:
1   ...   849   850   851   852   853   854   855   856   ...   875




Ma'lumotlar bazasi mualliflik huquqi bilan himoyalangan ©hozir.org 2024
ma'muriyatiga murojaat qiling

kiriting | ro'yxatdan o'tish
    Bosh sahifa
юртда тантана
Боғда битган
Бугун юртда
Эшитганлар жилманглар
Эшитмадим деманглар
битган бодомлар
Yangiariq tumani
qitish marakazi
Raqamli texnologiyalar
ilishida muhokamadan
tasdiqqa tavsiya
tavsiya etilgan
iqtisodiyot kafedrasi
steiermarkischen landesregierung
asarlaringizni yuboring
o'zingizning asarlaringizni
Iltimos faqat
faqat o'zingizning
steierm rkischen
landesregierung fachabteilung
rkischen landesregierung
hamshira loyihasi
loyihasi mavsum
faolyatining oqibatlari
asosiy adabiyotlar
fakulteti ahborot
ahborot havfsizligi
havfsizligi kafedrasi
fanidan bo’yicha
fakulteti iqtisodiyot
boshqaruv fakulteti
chiqarishda boshqaruv
ishlab chiqarishda
iqtisodiyot fakultet
multiservis tarmoqlari
fanidan asosiy
Uzbek fanidan
mavzulari potok
asosidagi multiservis
'aliyyil a'ziym
billahil 'aliyyil
illaa billahil
quvvata illaa
falah' deganida
Kompyuter savodxonligi
bo’yicha mustaqil
'alal falah'
Hayya 'alal
'alas soloh
Hayya 'alas
mavsum boyicha


yuklab olish