Yahoo search engine was used by Ma

Source: Internet
Author: User

People who use the Yahoo Search Engine should pay special attention to it. Search results show that an XSS attack occurs. If an XSS vulnerability exists on the website, the attack attempts on the website will be triggered, attackers may experience attacks, and the system may be vulnerable to malicious programs. This may be because of the renovation and use of the Web Hosting method, or the post-attack symptoms of the Mass SQL Injection attack. It is intended to link with the previous The new year's holiday is a rare big-profile SQL Injection attack.> The intent of the article is the same as that of the article.
You can see the search results of "84." indicate that the string contains a regular string.


When analyzing "36." Search Results:


You can directly search for "inurl: daxia123" to find many problematic links:

As you can see, many search results have taken advantage of these attacks. If you click "select" and cooperate with XSS vulnerabilities, attackers will be attacked.

Directly search for "inurl: jxmmtv" and the result is:

The method is almost the same as daxia123, because it is a group of people.

There are two possible reasons for analysis and determination:
1. A large number of trojans on the Internet caused the Yahoo search engine to catch the website, which was already being accessed by the Trojan, as a result, the search results contain a website with intent.
2. There are a large number of users who attempt to search for the engine, and the results of the search result are linked to a website.

Google was also used in the past, and was used to launch a horse attack.Yi-<Googlt Bot finds Vulnerabilities> Article.

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.