Cross site scripting is the ability of malicious web developers to attach scripts to content that is sent to websites, such as URLs, elements in forms, database queries, and so on. After that, if there is a reply from the website, a malicious script will be transferred to the browser. You can display online discussion groups using interactive forms of untrusted sites and navigate web browsers by tracing links in web pages, e-mail, or newsgroup postings without knowing the linked links You can expose it to a script. , Forums, and other dynamically generated pages can expose text packets containing HTML tags.
Recent worldwide ran - sum - ware attacks on critical infrastructure has demonstrated that cybercriminals are constantly developing hacking technology. In 2017 hackers used sophisticated technology to make Wanna Cry and ExPety's Ransomware attack successful. Both attacks destroyed the computer and erased all important data. In addition, many of us do not fully recognize high-tech cyber attacks. Acronis conducted a worldwide survey to understand the awareness of the Ransomware attack and the readiness of data protection. As a result, six users per minute are at the expense of a zero-day attack and 34% of participants worldwide are willing to pay ransom after being attacked.
Recently, account acquisition, email hacking, targeted phishing attacks are known. Hackers from various politicians who are said to have been executed by Russian hackers have generated a lot of data. Despite the state's sponsored agent participation, some hackers do not rely on complex zero day attacks, but involve suspicious victims of social engineering. This type of attack is increasingly being used against the public. This has recently happened to one of my friends:
In July 2016, due to the attack (called DAO attack) Ethereum's hard fork was attacked about 50 million dollars. Major community supporters including Vitalik proposed changing Ethereum code to disable hackers and return victims. But some people think that the block chain code should be unchanged anyway. The solution is to "split" the original Ethereum into Ethereum and Ethereum classics. As people begin to look at Ethereum Classics, the price of ETC will soar. Ethereum occupies the majority of the market because of the large number of projects built on Ethereum. To run those programs, you need to pay them. Currently the price of ETC is one twentieth of ETH.
Everyone needs to understand the strengths and weaknesses of the top ten encryption currencies of market capitalization (3): Monero, IOTA and ETC
If the attack succeeds, defense is very difficult. Parity hacker 's white hat prove how limited the defense options are - I can not secure a contract, dismantle it, or regain the stolen money. . However, I think that this is not a fatal problem of block chain programming. Instead, it confirms that everyone already knows: This ecosystem is young and immature. To improve training and discipline, it takes a lot of work to process smart contracts in a way that banks handle ATM software. But in the long run, you have to go here to make the block chain successful.