republican-creole
site Search:


 
    All Forums Hot Topics Gallery






how-to block ads


 
Search Topic:
Share Topic
Posting?
Post a:
Post a:
Links: ·How To Get Noticed ·Web Monks FAQ ·Webhosting FAQ ·Posting Code ·How To Post ·Webhosting forum
AuthorAll Replies


bluebearMX
Get The Word Out
Premium
join:2002-07-12

reply to nil

Re: Kasia is not nuts really - She made the Regis

So, basically, you're just being sent back to the same page, right? What's the benefit of that though?


nil
Java Geek
join:2000-11-27
kudos:1

No.. not the same page.. any page someone wants to redirect people to.. could be a porn site.. or something
--
daily madness



bluebearMX
Get The Word Out
Premium
join:2002-07-12

Ok. Really, I'm not playing dumb. I think I understand now. So, what they are doing is sniffing out people redirecting them to other sites?



nil
Java Geek
join:2000-11-27
kudos:1
Host:
Webmasters and Dev..
Forum Feature Requ..

No.

I don't think you understand what a referer is? In terms of an http request anyway.. referer is one of the fields sent by the client to the server basically saying "Hi, this where I'm coming from, so in theory this page is linking to you" Let's say that field is filled with »www.google.com/

So now the web server looks at it and says "Ah, cool, google is linking to me".. and in in the case of some happy blog owner he now has a script generate that on his weblog..

"hey look guys, I"m getting traffic from »www.google.com".. but see, he doesn't actually do this by hand just gets the referring url from the http request.

Now the bad guy takes that request and modifies it to instead of the link have a line of javascript like say.. <script>top.top.location.href=bignastypornsitecom';</script> and goes off and hits the weblog with this modified request (his own request, not someone elses).

The weblog owner has this scripted so he doens't see that this isn't a real referer and happily displays it on his page.. at which points this referer acts like any javascript would when embedded in html.. it redirects.
--
daily madness



bluebearMX
Get The Word Out
Premium
join:2002-07-12

Yeah, I know what a referrer is. I've used it before in ColdFusion. I just didn't understand what the javascript code injection was all about. I understand everything you're saying now. Thanks to imp's PM's and you.
--
AZIZAVENUE - For Macromedia Enthusiasts
Bezworks Design
Featured Client



Bradley
Bad Graphics Ghost
Premium
join:2001-02-20
So Far Away

reply to nil
Excellent explanation...I even understood it that time.


Sunday, 03-Jun 19:35:58 Terms of Use & Privacy | feedback | contact | Hosting by nac.net - DSL,Hosting & Co-lo
over 12.5 years online © 1999-2012 dslreports.com.
Most commented news this week
Hot Topics