This document explains the general attack vector 'Offline Service Injection.' A proof of concept attack, namely resetting a domain administrator password, is detailed.
This document will introduce password protection of web documents using .htaccess & .htpasswd files. It is geared toward the novice is has basic familiarity with *nix. As such, it only touches the tip of the iceberg when it comes to .htaccess .