{"id":3069,"date":"2020-01-31T07:59:40","date_gmt":"2020-01-31T07:59:40","guid":{"rendered":"https:\/\/hosteko.com\/blog\/?p=3069"},"modified":"2020-10-17T01:47:04","modified_gmt":"2020-10-17T01:47:04","slug":"apa-itu-cross-site-scripting-xss-bagaimana-cara-mencegahnya","status":"publish","type":"post","link":"https:\/\/hosteko.com\/blog\/apa-itu-cross-site-scripting-xss-bagaimana-cara-mencegahnya","title":{"rendered":"Apa itu Cross Site Scripting (XSS)? Bagaimana  cara mencegahnya?"},"content":{"rendered":"<p><em>Cross Site Scripting<\/em> (XSS) merupakan kode HTML atau <em>Client Script<\/em> yang berdampak pada\u00a0 penyerangan website. Salah satu jenis serangan yang paling berbahaya dan banyak\u00a0 ditemukan yaitu pada google, facebook, Amazon, Paypal dan lain sebagainya. Serangan <em>Cross Site Scripting<\/em> digunakan untuk mencuri cookie, penyebaran malware <em>session hijacking<\/em> \/ pembajakan session, dan pembelokkan tujuan \/ <em>malicious redirects<\/em>. Penyerangannya dilakukan dengan \u2018menyisipkan\u2019 kode script (biasanya <strong>JavaScript<\/strong>) ke dalam sebuah situs. Jika situs ini memiliki fitur untuk menampilkan kembali isian form ke web browser, maka kemungkinan akan berhasil.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"wp-image-3071 alignnone\" src=\"https:\/\/hosteko.com\/htk-blog\/wp-content\/uploads\/2020\/01\/XSS.png\" alt=\"\" width=\"628\" height=\"418\" \/><\/p>\n<p>Contoh<\/p>\n<p>Jika anda memiliki chat box atau comment box, kami sarankan untuk lebih berhati-hati dengan karakter yang diterima oleh input box. Jika anda mencoba memasukkan komen atau pesan pada chat box dengan contoh sebagai berikut<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-3072\" src=\"https:\/\/hosteko.com\/htk-blog\/wp-content\/uploads\/2020\/01\/1-6.png\" alt=\"\" width=\"711\" height=\"37\" srcset=\"https:\/\/hosteko.com\/htk-blog\/wp-content\/uploads\/2020\/01\/1-6.png 711w, https:\/\/hosteko.com\/htk-blog\/wp-content\/uploads\/2020\/01\/1-6-555x29.png 555w\" sizes=\"auto, (max-width: 711px) 100vw, 711px\" \/><\/p>\n<p>Terdapat juga script yang disisipkan pada tag html, seperti contoh tag emg<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-3073\" src=\"https:\/\/hosteko.com\/htk-blog\/wp-content\/uploads\/2020\/01\/2-5.png\" alt=\"\" width=\"710\" height=\"37\" srcset=\"https:\/\/hosteko.com\/htk-blog\/wp-content\/uploads\/2020\/01\/2-5.png 710w, https:\/\/hosteko.com\/htk-blog\/wp-content\/uploads\/2020\/01\/2-5-555x29.png 555w\" sizes=\"auto, (max-width: 710px) 100vw, 710px\" \/><\/p>\n<p>Penyerangan dapat juga dengan menambahkan <em>client script<\/em> untuk redirect website ke web pemilik. Tujuannya yaitu untuk menambah traffic atau backlink ke web penyerang.<\/p>\n<h2><strong>Kategori XSS<\/strong><\/h2>\n<p>Terdapat dua kategori pada XSS, yaitu Presistent dan Non-Presistent. Serangan Presistent berdampak permanen karenan script diinjek ke database atau secondary storage, sedangkan serangan Non-Presistent bersifat sementara dan membutuhkan aktivitas sosial kepada calon korban.<\/p>\n<h2><strong>Cara mencegah <em>Cross Site Scripting<\/em> (XSS)<\/strong><\/h2>\n<p>Salah satu cara untuk menghindari <em>Cross Site Scripting<\/em> yaitu dengan menggunakan fungsi PHP yaitu strip_tags(.) yang berfungsi untuk menghilangkan semua tag HTML atau dengan menggunakan fungsi\u00a0 htmlentities(.) yang berfungsi mengganti karakter &lt; dan &gt; menjadi &amp;lt; dan &amp;gt;.<\/p>\n<h3><strong>Cara mencegah XSS untuk User <\/strong><\/h3>\n<p>Dilakukan dengan mematikan semua bahasa script yang terdapat pada komputer. Hal ini menyebabkan beberapa fungsionalitas pada site yang sedang dikunjungi menjadi tidak berjalan. Cara lain yang dapat anda lakukan yaitu dengan lebih berhati-hati dalam mengunjungi sebuah situs, terutama source URL nya.<\/p>\n<h3><strong>Cara mencegah XSS untuk Developer atau suatu Organisasi<\/strong><\/h3>\n<p>Pengembang aplikasi perlu menyelaraskan antisipasi pengamanan sesuai kebutuhan bisnis. Cara yang bisa anda lakukan yaitu dengan memastikan bahwa halaman yang membangkitkan konten secara dinamis tidak mendukung tag yang tidak diinginkan.<\/p>\n<p>Sumber yang umum dijadikan titik masuk yaitu Query string, URL\u2019s dan bagian universal locator, data yang dikirimkan, cookies, data persisten oleh user.<\/p>\n<h3>Cara pencegahan yang dapat dilakukan interaksi dengan sisi klien , yaitu dengan:<\/h3>\n<ol>\n<li>\n<h4>Filtering<\/h4>\n<\/li>\n<\/ol>\n<p>Dengan mewaspadai karakter-karakter khusus, seperti:<\/p>\n<ul>\n<li>Terletak pada isi dari elemen blok level<\/li>\n<li>\u201c&lt;\u201d : pembuka sebuah tag<\/li>\n<li>\u201c&amp;\u201d: penanda sebuah entitas<\/li>\n<li>\u201c&gt;\u201d<\/li>\n<li>Terletak di dalam nilai suatu atribut<\/li>\n<li>di dalam nilai suatu atribut, diapit tanda petik ganda<\/li>\n<li>di dalam nilai suatu atribut, diapit dengan petik tunggal<\/li>\n<li>di dalam nilai suatu atirbut, tanpa diapit tanda petik<\/li>\n<li>\u201c&amp;\u201d dengan conjunction<\/li>\n<li>Terletak pada URL<\/li>\n<li>spasi, tabulasi dan pindah baris sebagai penanda akhir dari suatu URL<\/li>\n<li>\u201c&amp;\u201d menandai suatu entitas, atau batas parameter CGI<\/li>\n<li>Karakter yang bukan ASCII : tidak ada karakter non-ASCII di URL<\/li>\n<li>\u201c%\u201d:<\/li>\n<li>Terletak di antara &lt;SCRIPT&gt; dengan &lt;\/SCRIPT&gt; : titik koma, tanda kurung, kurung kurawal dan ganti garis.<\/li>\n<li>Terletak di dalam server side script yang akan mengkonversikan tanda seru di input menjadi tanda petik ganda di output.<\/li>\n<\/ul>\n<ol start=\"2\">\n<li>\n<h4>Validasi<\/h4>\n<\/li>\n<\/ol>\n<p>Teknik ini dilakukan untuk\u00a0 menjamin hanya input yang tepat yang akan dipilih.<\/p>\n<ol start=\"3\">\n<li>\n<h4>Encoding<\/h4>\n<\/li>\n<\/ol>\n<p>Dengan melakukan encoding, data anda tidak akan hilang, meskipun pengkodean karakter yang dinilai membahayakan.<\/p>\n<p>Pengkodean dapat dilakukan saat data disampaikan kembali ke user.<\/p>\n<p>Diatas merupakan\u00a0 artikel mengenai <em>Cross Site Scripting<\/em> (XSS) dan\u00a0 cara mencegahnya. Semoga artikel ini dapat menambahkan wawasan\u00a0 dan pengetahuan baru untuk Anda.<\/p>\n<p>Terima Kasih<\/p>\n\n\n<div class=\"kk-star-ratings kksr-auto kksr-align-right kksr-valign-bottom\"\n    data-payload='{&quot;align&quot;:&quot;right&quot;,&quot;id&quot;:&quot;3069&quot;,&quot;slug&quot;:&quot;default&quot;,&quot;valign&quot;:&quot;bottom&quot;,&quot;ignore&quot;:&quot;&quot;,&quot;reference&quot;:&quot;auto&quot;,&quot;class&quot;:&quot;&quot;,&quot;count&quot;:&quot;0&quot;,&quot;legendonly&quot;:&quot;&quot;,&quot;readonly&quot;:&quot;&quot;,&quot;score&quot;:&quot;0&quot;,&quot;starsonly&quot;:&quot;&quot;,&quot;best&quot;:&quot;5&quot;,&quot;gap&quot;:&quot;0&quot;,&quot;greet&quot;:&quot;Jadilah yang pertama untuk memberi nilai&quot;,&quot;legend&quot;:&quot;0\\\/5 - (0 votes)&quot;,&quot;size&quot;:&quot;22&quot;,&quot;title&quot;:&quot;Apa itu Cross Site Scripting (XSS)? Bagaimana  cara mencegahnya?&quot;,&quot;width&quot;:&quot;0&quot;,&quot;_legend&quot;:&quot;{score}\\\/{best} - ({count} {votes})&quot;,&quot;font_factor&quot;:&quot;1.25&quot;}'>\n            \n<div class=\"kksr-stars\">\n    \n<div class=\"kksr-stars-inactive\">\n            <div class=\"kksr-star\" data-star=\"1\" style=\"padding-right: 0px\">\n            \n\n<div class=\"kksr-icon\" style=\"width: 22px; height: 22px;\"><\/div>\n        <\/div>\n            <div class=\"kksr-star\" data-star=\"2\" style=\"padding-right: 0px\">\n            \n\n<div class=\"kksr-icon\" style=\"width: 22px; height: 22px;\"><\/div>\n        <\/div>\n            <div class=\"kksr-star\" data-star=\"3\" style=\"padding-right: 0px\">\n            \n\n<div class=\"kksr-icon\" style=\"width: 22px; height: 22px;\"><\/div>\n        <\/div>\n            <div class=\"kksr-star\" data-star=\"4\" style=\"padding-right: 0px\">\n            \n\n<div class=\"kksr-icon\" style=\"width: 22px; height: 22px;\"><\/div>\n        <\/div>\n            <div class=\"kksr-star\" data-star=\"5\" style=\"padding-right: 0px\">\n            \n\n<div class=\"kksr-icon\" style=\"width: 22px; height: 22px;\"><\/div>\n        <\/div>\n    <\/div>\n    \n<div class=\"kksr-stars-active\" style=\"width: 0px;\">\n            <div class=\"kksr-star\" style=\"padding-right: 0px\">\n            \n\n<div class=\"kksr-icon\" style=\"width: 22px; height: 22px;\"><\/div>\n        <\/div>\n            <div class=\"kksr-star\" style=\"padding-right: 0px\">\n            \n\n<div class=\"kksr-icon\" style=\"width: 22px; height: 22px;\"><\/div>\n        <\/div>\n            <div class=\"kksr-star\" style=\"padding-right: 0px\">\n            \n\n<div class=\"kksr-icon\" style=\"width: 22px; height: 22px;\"><\/div>\n        <\/div>\n            <div class=\"kksr-star\" style=\"padding-right: 0px\">\n            \n\n<div class=\"kksr-icon\" style=\"width: 22px; height: 22px;\"><\/div>\n        <\/div>\n            <div class=\"kksr-star\" style=\"padding-right: 0px\">\n            \n\n<div class=\"kksr-icon\" style=\"width: 22px; height: 22px;\"><\/div>\n        <\/div>\n    <\/div>\n<\/div>\n                \n\n<div class=\"kksr-legend\" style=\"font-size: 17.6px;\">\n            <span class=\"kksr-muted\">Jadilah yang pertama untuk memberi nilai<\/span>\n    <\/div>\n    <\/div>\n","protected":false},"excerpt":{"rendered":"<p>Cross Site Scripting (XSS) merupakan kode HTML atau Client Script yang berdampak pada\u00a0 penyerangan website. Salah satu jenis serangan yang paling berbahaya dan banyak\u00a0 ditemukan yaitu pada google, facebook, Amazon, Paypal dan lain sebagainya. Serangan Cross Site Scripting digunakan untuk mencuri cookie, penyebaran malware session hijacking \/ pembajakan session, dan pembelokkan tujuan \/ malicious redirects. [&hellip;]<\/p>\n","protected":false},"author":6,"featured_media":3070,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"rop_custom_images_group":[],"rop_custom_messages_group":[],"rop_publish_now":"initial","rop_publish_now_accounts":{"twitter_2392824914_2392824914":""},"rop_publish_now_history":[],"rop_publish_now_status":"pending","_jetpack_memberships_contains_paid_content":false,"footnotes":"","jetpack_publicize_message":"","jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":false,"jetpack_social_options":{"image_generator_settings":{"template":"highway","default_image_id":0,"enabled":false},"version":2}},"categories":[3,49,153,20],"tags":[1056,1055,1058,1059,1057],"class_list":["post-3069","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-blog","category-internet","category-pengetahuan-umum","category-tips","tag-cross-site-scripting-xss","tag-cross-site-scripting-adalah","tag-cross-site-scripting-dan-cara-mencegah","tag-cross-site-scripting-dan-cara-mengatasi","tag-cross-site-scripting-example"],"featured_image_src":{"landsacpe":["https:\/\/hosteko.com\/htk-blog\/wp-content\/uploads\/2020\/01\/file.png",900,350,false],"list":["https:\/\/hosteko.com\/htk-blog\/wp-content\/uploads\/2020\/01\/file-555x216.png",463,180,true],"medium":["https:\/\/hosteko.com\/htk-blog\/wp-content\/uploads\/2020\/01\/file-300x117.png",300,117,true],"full":["https:\/\/hosteko.com\/htk-blog\/wp-content\/uploads\/2020\/01\/file.png",900,350,false]},"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v25.8 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>Apa itu Cross Site Scripting (XSS)? Bagaimana cara mencegahnya? - Hosteko Blog<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/hosteko.com\/blog\/apa-itu-cross-site-scripting-xss-bagaimana-cara-mencegahnya\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Apa itu Cross Site Scripting (XSS)? Bagaimana cara mencegahnya? - Hosteko Blog\" \/>\n<meta property=\"og:description\" content=\"Cross Site Scripting (XSS) merupakan kode HTML atau Client Script yang berdampak pada\u00a0 penyerangan website. Salah satu jenis serangan yang paling berbahaya dan banyak\u00a0 ditemukan yaitu pada google, facebook, Amazon, Paypal dan lain sebagainya. Serangan Cross Site Scripting digunakan untuk mencuri cookie, penyebaran malware session hijacking \/ pembajakan session, dan pembelokkan tujuan \/ malicious redirects. [&hellip;]\" \/>\n<meta property=\"og:url\" content=\"https:\/\/hosteko.com\/blog\/apa-itu-cross-site-scripting-xss-bagaimana-cara-mencegahnya\" \/>\n<meta property=\"og:site_name\" content=\"Hosteko Blog\" \/>\n<meta property=\"article:published_time\" content=\"2020-01-31T07:59:40+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2020-10-17T01:47:04+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/hosteko.com\/htk-blog\/wp-content\/uploads\/2020\/01\/file.png\" \/>\n\t<meta property=\"og:image:width\" content=\"900\" \/>\n\t<meta property=\"og:image:height\" content=\"350\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"Sallu Warni\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Sallu Warni\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"3 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\/\/hosteko.com\/blog\/apa-itu-cross-site-scripting-xss-bagaimana-cara-mencegahnya#article\",\"isPartOf\":{\"@id\":\"https:\/\/hosteko.com\/blog\/apa-itu-cross-site-scripting-xss-bagaimana-cara-mencegahnya\"},\"author\":{\"name\":\"Sallu Warni\",\"@id\":\"https:\/\/hosteko.com\/blog\/#\/schema\/person\/484eb0b396ffc594205efac1ad2c3b8a\"},\"headline\":\"Apa itu Cross Site Scripting (XSS)? Bagaimana cara mencegahnya?\",\"datePublished\":\"2020-01-31T07:59:40+00:00\",\"dateModified\":\"2020-10-17T01:47:04+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\/\/hosteko.com\/blog\/apa-itu-cross-site-scripting-xss-bagaimana-cara-mencegahnya\"},\"wordCount\":550,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\/\/hosteko.com\/blog\/#organization\"},\"image\":{\"@id\":\"https:\/\/hosteko.com\/blog\/apa-itu-cross-site-scripting-xss-bagaimana-cara-mencegahnya#primaryimage\"},\"thumbnailUrl\":\"https:\/\/hosteko.com\/htk-blog\/wp-content\/uploads\/2020\/01\/file.png\",\"keywords\":[\"cross site scripting (XSS)\",\"cross site scripting adalah\",\"cross site scripting dan cara mencegah\",\"cross site scripting dan cara mengatasi\",\"cross site scripting example\"],\"articleSection\":[\"Blog\",\"internet\",\"pengetahuan umum\",\"Tips\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\/\/hosteko.com\/blog\/apa-itu-cross-site-scripting-xss-bagaimana-cara-mencegahnya#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/hosteko.com\/blog\/apa-itu-cross-site-scripting-xss-bagaimana-cara-mencegahnya\",\"url\":\"https:\/\/hosteko.com\/blog\/apa-itu-cross-site-scripting-xss-bagaimana-cara-mencegahnya\",\"name\":\"Apa itu Cross Site Scripting (XSS)? Bagaimana cara mencegahnya? - Hosteko Blog\",\"isPartOf\":{\"@id\":\"https:\/\/hosteko.com\/blog\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/hosteko.com\/blog\/apa-itu-cross-site-scripting-xss-bagaimana-cara-mencegahnya#primaryimage\"},\"image\":{\"@id\":\"https:\/\/hosteko.com\/blog\/apa-itu-cross-site-scripting-xss-bagaimana-cara-mencegahnya#primaryimage\"},\"thumbnailUrl\":\"https:\/\/hosteko.com\/htk-blog\/wp-content\/uploads\/2020\/01\/file.png\",\"datePublished\":\"2020-01-31T07:59:40+00:00\",\"dateModified\":\"2020-10-17T01:47:04+00:00\",\"breadcrumb\":{\"@id\":\"https:\/\/hosteko.com\/blog\/apa-itu-cross-site-scripting-xss-bagaimana-cara-mencegahnya#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/hosteko.com\/blog\/apa-itu-cross-site-scripting-xss-bagaimana-cara-mencegahnya\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/hosteko.com\/blog\/apa-itu-cross-site-scripting-xss-bagaimana-cara-mencegahnya#primaryimage\",\"url\":\"https:\/\/hosteko.com\/htk-blog\/wp-content\/uploads\/2020\/01\/file.png\",\"contentUrl\":\"https:\/\/hosteko.com\/htk-blog\/wp-content\/uploads\/2020\/01\/file.png\",\"width\":900,\"height\":350},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/hosteko.com\/blog\/apa-itu-cross-site-scripting-xss-bagaimana-cara-mencegahnya#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/hosteko.com\/blog\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Apa itu Cross Site Scripting (XSS)? Bagaimana cara mencegahnya?\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/hosteko.com\/blog\/#website\",\"url\":\"https:\/\/hosteko.com\/blog\/\",\"name\":\"Hosteko Blog\",\"description\":\"Berita &amp; Informasi Dunia IT\",\"publisher\":{\"@id\":\"https:\/\/hosteko.com\/blog\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/hosteko.com\/blog\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\/\/hosteko.com\/blog\/#organization\",\"name\":\"HOSTEKO\",\"url\":\"https:\/\/hosteko.com\/blog\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/hosteko.com\/blog\/#\/schema\/logo\/image\/\",\"url\":\"https:\/\/hosteko.com\/htk-blog\/wp-content\/uploads\/2019\/04\/logo-hosteko.png\",\"contentUrl\":\"https:\/\/hosteko.com\/htk-blog\/wp-content\/uploads\/2019\/04\/logo-hosteko.png\",\"width\":195,\"height\":57,\"caption\":\"HOSTEKO\"},\"image\":{\"@id\":\"https:\/\/hosteko.com\/blog\/#\/schema\/logo\/image\/\"}},{\"@type\":\"Person\",\"@id\":\"https:\/\/hosteko.com\/blog\/#\/schema\/person\/484eb0b396ffc594205efac1ad2c3b8a\",\"name\":\"Sallu Warni\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/hosteko.com\/blog\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/3059582f62b2441ae791fb8541f07d2e7934f255fdf731e2587edda13b8dedbd?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/3059582f62b2441ae791fb8541f07d2e7934f255fdf731e2587edda13b8dedbd?s=96&d=mm&r=g\",\"caption\":\"Sallu Warni\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Apa itu Cross Site Scripting (XSS)? Bagaimana cara mencegahnya? - Hosteko Blog","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/hosteko.com\/blog\/apa-itu-cross-site-scripting-xss-bagaimana-cara-mencegahnya","og_locale":"en_US","og_type":"article","og_title":"Apa itu Cross Site Scripting (XSS)? Bagaimana cara mencegahnya? - Hosteko Blog","og_description":"Cross Site Scripting (XSS) merupakan kode HTML atau Client Script yang berdampak pada\u00a0 penyerangan website. Salah satu jenis serangan yang paling berbahaya dan banyak\u00a0 ditemukan yaitu pada google, facebook, Amazon, Paypal dan lain sebagainya. Serangan Cross Site Scripting digunakan untuk mencuri cookie, penyebaran malware session hijacking \/ pembajakan session, dan pembelokkan tujuan \/ malicious redirects. [&hellip;]","og_url":"https:\/\/hosteko.com\/blog\/apa-itu-cross-site-scripting-xss-bagaimana-cara-mencegahnya","og_site_name":"Hosteko Blog","article_published_time":"2020-01-31T07:59:40+00:00","article_modified_time":"2020-10-17T01:47:04+00:00","og_image":[{"width":900,"height":350,"url":"https:\/\/hosteko.com\/htk-blog\/wp-content\/uploads\/2020\/01\/file.png","type":"image\/png"}],"author":"Sallu Warni","twitter_card":"summary_large_image","twitter_misc":{"Written by":"Sallu Warni","Est. reading time":"3 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/hosteko.com\/blog\/apa-itu-cross-site-scripting-xss-bagaimana-cara-mencegahnya#article","isPartOf":{"@id":"https:\/\/hosteko.com\/blog\/apa-itu-cross-site-scripting-xss-bagaimana-cara-mencegahnya"},"author":{"name":"Sallu Warni","@id":"https:\/\/hosteko.com\/blog\/#\/schema\/person\/484eb0b396ffc594205efac1ad2c3b8a"},"headline":"Apa itu Cross Site Scripting (XSS)? Bagaimana cara mencegahnya?","datePublished":"2020-01-31T07:59:40+00:00","dateModified":"2020-10-17T01:47:04+00:00","mainEntityOfPage":{"@id":"https:\/\/hosteko.com\/blog\/apa-itu-cross-site-scripting-xss-bagaimana-cara-mencegahnya"},"wordCount":550,"commentCount":0,"publisher":{"@id":"https:\/\/hosteko.com\/blog\/#organization"},"image":{"@id":"https:\/\/hosteko.com\/blog\/apa-itu-cross-site-scripting-xss-bagaimana-cara-mencegahnya#primaryimage"},"thumbnailUrl":"https:\/\/hosteko.com\/htk-blog\/wp-content\/uploads\/2020\/01\/file.png","keywords":["cross site scripting (XSS)","cross site scripting adalah","cross site scripting dan cara mencegah","cross site scripting dan cara mengatasi","cross site scripting example"],"articleSection":["Blog","internet","pengetahuan umum","Tips"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/hosteko.com\/blog\/apa-itu-cross-site-scripting-xss-bagaimana-cara-mencegahnya#respond"]}]},{"@type":"WebPage","@id":"https:\/\/hosteko.com\/blog\/apa-itu-cross-site-scripting-xss-bagaimana-cara-mencegahnya","url":"https:\/\/hosteko.com\/blog\/apa-itu-cross-site-scripting-xss-bagaimana-cara-mencegahnya","name":"Apa itu Cross Site Scripting (XSS)? Bagaimana cara mencegahnya? - Hosteko Blog","isPartOf":{"@id":"https:\/\/hosteko.com\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/hosteko.com\/blog\/apa-itu-cross-site-scripting-xss-bagaimana-cara-mencegahnya#primaryimage"},"image":{"@id":"https:\/\/hosteko.com\/blog\/apa-itu-cross-site-scripting-xss-bagaimana-cara-mencegahnya#primaryimage"},"thumbnailUrl":"https:\/\/hosteko.com\/htk-blog\/wp-content\/uploads\/2020\/01\/file.png","datePublished":"2020-01-31T07:59:40+00:00","dateModified":"2020-10-17T01:47:04+00:00","breadcrumb":{"@id":"https:\/\/hosteko.com\/blog\/apa-itu-cross-site-scripting-xss-bagaimana-cara-mencegahnya#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/hosteko.com\/blog\/apa-itu-cross-site-scripting-xss-bagaimana-cara-mencegahnya"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/hosteko.com\/blog\/apa-itu-cross-site-scripting-xss-bagaimana-cara-mencegahnya#primaryimage","url":"https:\/\/hosteko.com\/htk-blog\/wp-content\/uploads\/2020\/01\/file.png","contentUrl":"https:\/\/hosteko.com\/htk-blog\/wp-content\/uploads\/2020\/01\/file.png","width":900,"height":350},{"@type":"BreadcrumbList","@id":"https:\/\/hosteko.com\/blog\/apa-itu-cross-site-scripting-xss-bagaimana-cara-mencegahnya#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/hosteko.com\/blog"},{"@type":"ListItem","position":2,"name":"Apa itu Cross Site Scripting (XSS)? Bagaimana cara mencegahnya?"}]},{"@type":"WebSite","@id":"https:\/\/hosteko.com\/blog\/#website","url":"https:\/\/hosteko.com\/blog\/","name":"Hosteko Blog","description":"Berita &amp; Informasi Dunia IT","publisher":{"@id":"https:\/\/hosteko.com\/blog\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/hosteko.com\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/hosteko.com\/blog\/#organization","name":"HOSTEKO","url":"https:\/\/hosteko.com\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/hosteko.com\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/hosteko.com\/htk-blog\/wp-content\/uploads\/2019\/04\/logo-hosteko.png","contentUrl":"https:\/\/hosteko.com\/htk-blog\/wp-content\/uploads\/2019\/04\/logo-hosteko.png","width":195,"height":57,"caption":"HOSTEKO"},"image":{"@id":"https:\/\/hosteko.com\/blog\/#\/schema\/logo\/image\/"}},{"@type":"Person","@id":"https:\/\/hosteko.com\/blog\/#\/schema\/person\/484eb0b396ffc594205efac1ad2c3b8a","name":"Sallu Warni","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/hosteko.com\/blog\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/3059582f62b2441ae791fb8541f07d2e7934f255fdf731e2587edda13b8dedbd?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/3059582f62b2441ae791fb8541f07d2e7934f255fdf731e2587edda13b8dedbd?s=96&d=mm&r=g","caption":"Sallu Warni"}}]}},"jetpack_publicize_connections":[],"jetpack_featured_media_url":"https:\/\/hosteko.com\/htk-blog\/wp-content\/uploads\/2020\/01\/file.png","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/hosteko.com\/blog\/wp-json\/wp\/v2\/posts\/3069","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/hosteko.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/hosteko.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/hosteko.com\/blog\/wp-json\/wp\/v2\/users\/6"}],"replies":[{"embeddable":true,"href":"https:\/\/hosteko.com\/blog\/wp-json\/wp\/v2\/comments?post=3069"}],"version-history":[{"count":0,"href":"https:\/\/hosteko.com\/blog\/wp-json\/wp\/v2\/posts\/3069\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/hosteko.com\/blog\/wp-json\/wp\/v2\/media\/3070"}],"wp:attachment":[{"href":"https:\/\/hosteko.com\/blog\/wp-json\/wp\/v2\/media?parent=3069"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/hosteko.com\/blog\/wp-json\/wp\/v2\/categories?post=3069"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/hosteko.com\/blog\/wp-json\/wp\/v2\/tags?post=3069"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}