Informit.com provides an insiders look at a
real life XSS attack and how it was used to bypass the authentication scheme of an online web application, leading to "shell" access, and admin account, and more. XSS attacks are often discussed in theory — this walk through illustrates just how dangerous these types of attacks can be in reality