Cross-server attack (XSA)

Practice



In computer science, XSA (better known as a cross-server attack) is a network security intrusion technique that allows a malicious client to compromise the security of a website or service on a server by exploiting services implemented on the server that may be insecure.

In general, XSA is demonstrated against websites, but it is sometimes used in combination with other services located on the same server.

Basics

XSA is a technique that allows a malicious client to use services implemented by a remote server to attack another service on the same server or network.

Most hosting companies that offer hosting for a large or even a small number of separate sites are vulnerable to this attack technique because of the number of access services, such as PHP and the web server itself, that give a client access to another website's configurations, files, passwords, and the like.

History

The term "XSA" was first coined by DeadlyData, a well-known computer hacker in the early 2000s, by analogy with the TeamSpeak voice communication software. While he neither invented nor pioneered this intrusion technique, he coined it as a shorthand term to describe the act of carrying out cross-server attacks (XSA).

It was then adopted by the community and now underlies most of the methods and subsets of the technique that give both computer hackers and attackers terminology for attacking websites using software located on the same server.

Comments

To leave a comment

If you have any suggestion, idea, thanks or comment, feel free to write. We really value feedback and are glad to hear your opinion.
To reply

Lectures and tutorial on "information security - Cryptography and Cryptanalysis. Steganography. Information protection"

Terms: information security - Cryptography and Cryptanalysis. Steganography. Information protection