Description: Cross-site scripting (XSS) is a type of computer security vulnerability typically found in Web applications, such as web browsers through breaches of browser security, that enables attackers to inject client-side script into Web pages viewed by other users.
source :wekipedia
this video is all about how to poison search engine using xss. in this type of attack search engine is manipulated to display search results that contain references to malware delivering websites. Search engine poisoning is responsible for 40% of malware delivery on the Web.
There are various methods to perform Search Engine Poisoning attacks.some of them are
1.taking control of popular websites
2.using the search engines' "sponsored" links to reference malicious sites and injecting HTML code.
Disclaimer: We are a infosec video aggregator and this video is linked from an external website. The original author may be different from the user re-posting/linking it here. Please do not assume the authors to be same without verifying.
Nice video can anyone give me cookie stealing php script ?
poisoning of search engine may redirect your search to malware containing websites.