Uploaded October 2022 | Updated September 2026, 2 weeks ago
Why is it called "XSS"? Where does it come from and who influenced this type of website vulnerability?
LEARN ON HEXTREE (ad)
Learn hacking on Hextree: hextree.io
Watch this video and more on Hextree: app.hextree.io/courses/yt-history-xss/history-of-xss
Join the Hextree Discord: discord.gg/xgQpCQCpvy
Full Playlist "The History of XSS": youtube.com/playlist?list=PLhixgUqwRTjyakFK7puB3fHVfXMinqMSi
Hotmail "Attackments": web.archive.org/web/19981205221020/http://because-we-can.com/attackments/default.htm
Which freemail services are safe: web.archive.org/web/19981207041804/http://because-we-can.com:80/all/compare.htm
Article about XSS: web.archive.org/web/19990117001239/http://www.news.com/News/Item/0,4,25792,00.html
Microsoft's 2000 XSS background and IIS bulletin: learn.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-060
Microsoft's archived browser guidance: ftp.zx.net.nz/pub/archive/ftp.microsoft.com/MISC/KB/en-us/253/117.HTM
CERT Advisory CA-2000-02: https://resources.sei.cmu.edu/asset_files/whitepaper/2000_019_001_496188.pdf
CHAPTERS
00:00 - Intro and Recap
01:35 - XSS's 10th Birthday
02:51 - Talking to David Ross
03:47 - Cross-frame Security Issues
04:43 - Hotmail ATTACKMENTS
06:40 - Breeding Ground for XSS
08:05 - Microsoft in 1999
09:48 - "Cross-Site Scripting" Name Origin
11:56 - CERT Advisory CA-2000-2
13:30 - Do you remember XSS?
SUPPORT
Per video: patreon.com/join/liveoverflow
Per month: youtube.com/channel/UClcE-kVhqyiHCcjYwcpfj9w/join
Buy my handwriting font (ad): shop.liveoverflow.com
WATCH, FOLLOW & READ
Second channel: youtube.com/LiveUnderflow
Twitch: twitch.tv/LiveOverflow
Twitter: twitter.com/LiveOverflow
Instagram: instagram.com/LiveOverflow
TikTok: tiktok.com/@liveoverflow_
LiveOverflow blog: liveoverflow.com
Hextree blog (ad): hextree.io/blog
#WebSecurity #XSS #LiveOverflow
(ad) LiveOverflow YouTube channel is supported by advertisement and product placement.
Why is it called "XSS"? Where does it come from and who influenced this type of website vulnerability?
LEARN ON HEXTREE (ad)
Learn hacking on Hextree: hextree.io
Watch this video and more on Hextree: app.hextree.io/courses/yt-history-xss/history-of-xss
Join the Hextree Discord: discord.gg/xgQpCQCpvy
Full Playlist "The History of XSS": youtube.com/playlist?list=PLhixgUqwRTjyakFK7puB3fHVfXMinqMSi
Hotmail "Attackments": web.archive.org/web/19981205221020/http://because-we-can.com/attackments/default.htm
Which freemail services are safe: web.archive.org/web/19981207041804/http://because-we-can.com:80/all/compare.htm
Article about XSS: web.archive.org/web/19990117001239/http://www.news.com/News/Item/0,4,25792,00.html
Microsoft's 2000 XSS background and IIS bulletin: learn.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-060
Microsoft's archived browser guidance: ftp.zx.net.nz/pub/archive/ftp.microsoft.com/MISC/KB/en-us/253/117.HTM
CERT Advisory CA-2000-02: https://resources.sei.cmu.edu/asset_files/whitepaper/2000_019_001_496188.pdf
CHAPTERS
00:00 - Intro and Recap
01:35 - XSS's 10th Birthday
02:51 - Talking to David Ross
03:47 - Cross-frame Security Issues
04:43 - Hotmail ATTACKMENTS
06:40 - Breeding Ground for XSS
08:05 - Microsoft in 1999
09:48 - "Cross-Site Scripting" Name Origin
11:56 - CERT Advisory CA-2000-2
13:30 - Do you remember XSS?
SUPPORT
Per video: patreon.com/join/liveoverflow
Per month: youtube.com/channel/UClcE-kVhqyiHCcjYwcpfj9w/join
Buy my handwriting font (ad): shop.liveoverflow.com
WATCH, FOLLOW & READ
Second channel: youtube.com/LiveUnderflow
Twitch: twitch.tv/LiveOverflow
Twitter: twitter.com/LiveOverflow
Instagram: instagram.com/LiveOverflow
TikTok: tiktok.com/@liveoverflow_
LiveOverflow blog: liveoverflow.com
Hextree blog (ad): hextree.io/blog
#WebSecurity #XSS #LiveOverflow
(ad) LiveOverflow YouTube channel is supported by advertisement and product placement.










