Check the site for hidden links using the Lynx text browser

Source: Internet
Author: User
Keywords Text check very you can HTTP

Lynx is "distributed Computing Group within academic Computing Services of the University" products, originally from Lou Kansas, Michael Grobec and Charles Rezac developed. Later Garrett Blythe (Doslynx's original author) also joined the Lynx team. The Foteos macrides then transplanted lynx to the VMS system and maintained the software for a while. Lynx was released under the GPL in 1995 and has since been maintained by a group of volunteers.

Lynx was originally designed for UNIX and VMS and has been the most popular console browser in GNU. There are also DOS versions. More recently http://www.aliyun.com/zixun/aggregation/11208.html ">microsoft Windows version. There is also the Macintosh version (the so-called "for System 7 and later"), although it is not always updated.

Because its interface is suitable for text-to-speech and Braille displays, Lynx was once popular with the visually impaired, but later better screen readers reduced the attractiveness of lynx to blind people.

Its main competitor is the links browser (several different versions) and the W3m browser.

Lynx is a full-featured Web browser that can run under a variety of operating systems.

Lynx when invoked by the command line, remote attackers can use this vulnerability to increase HTTP header information to manipulate HTTP request information due to the lack of proper handling of carriage return and line feed.

When the URL is used in a command-line manner or in a www_home environment variable, lynx does not delete or encode some dangerous word Furu spaces, TAB,CR, and LF before the query is built HTTP, which means that an attacker can add a space + "http/1.0" after the normal URL. + CRLF + Part header + CRLF + CRLF to reconstruct the URL and send any forged HTTP headers.

When the program starts Lynx, the URL host section is provided by the program and the path is provided by the user (such as "lynxhttp://www.ithov.com/$path", where the path is provided by the user), An attacker could allow this program to access a Web site other than www.ithov.com, and if a virtual host exists on the www.ithov.com machine, you can access the contents of other virtual hosts by adding "host:" to the header information described above.

Once a friend asked me how to judge a seoer is not a master. I had an idea, and advised him to ask that seoer is not aware of Lynx in the SEO application method. So to ask questions, in fact, can reflect from a side of this seoer SEO research how deep.

SEO industry Now, although there are a lot of misinformation, but if you practice often, still can find a lot of really useful methods of operation. Practice for a long time, can also judge who said the right, who said there are problems, such seoer, you can rest assured that he to operate some of the more important sites. Further to the site of the details of the optimization process, you will find that many people have not talked before, it is difficult to optimize some small web site in the process of noticing the details. These details are hard to find in other places, or they can't be found at all. But in Google's Google website quality guide, Google Blackboard, Google Chinese webmaster blog, basically can find a few words about these details. It's just that it gives a direction, more specific details or you have to rely on yourself to practice.

On the first page of the Google website Quality Guide, you have been advised to use the Lynx tool area to test your site:

Use a text browser such as Lynx to check your Web site, because most search engine information acquisition software looks at your site almost the same way as Lynx. If complex features such as Javascript, cookies, session IDs, frames, DHTML, or Flash cause you to not see the entire site in a text browser, search engine information acquisition software may experience problems crawling your site.

Related Article

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.