XSS attacks see big rise last quarter

Cross-site scripting (XSS) attacks have been on the rise in the United States and Europe, up more than 160 percent from October to December of last year, according to a cloud hosting provider. On Tuesday, London-based FireHost released findings that XSS attacks blocked by FireHost's servers increased from more than one million to 2.6 million during the time studied, outpacing all of the common web attack vectors, including SQL injection. XSS is carried out when an attacker inserts malicious code into web pages, potentially allowing them to access information stored in the browser, such as cookies and session tokens.

More in News

Privacy-bolstering "Apps Act" introduced in House

The bill would provide consumers nationwide with similar protections already enforced by a California law.

Microsoft readies permanent fix for Internet Explorer bug used in energy attacks

Microsoft is prepping a whopper of a security update that will close 33 vulnerabilities, likely including an Internet Explorer (IE) flaw that has been used in targeted website attacks against the U.S. government.

Weakness in Adobe ColdFusion allowed court hackers access to 160K SSNs

Up to 160,000 Social Security numbers and one million driver's license numbers may have been accessed by intruders.