Enviar pesquisa
Carregar
Postcards from the post xss world- content exfiltration null
•
Transferir como PPTX, PDF
•
0 gostou
•
4,465 visualizações
Piyush Pattanayak
Seguir
Postcards from the post-XSS world- Content Exfiltrationtechnique.
Leia menos
Leia mais
Tecnologia
Denunciar
Compartilhar
Denunciar
Compartilhar
1 de 20
Baixar agora
Recomendados
Html5 localstorage attack vectors
Html5 localstorage attack vectors
Shreeraj Shah
NullCon 2012 - Ra.2: blackbox DOM-based XSS scanner
NullCon 2012 - Ra.2: blackbox DOM-based XSS scanner
Nishant Das Patnaik
Advanced CSRF and Stateless Anti-CSRF
Advanced CSRF and Stateless Anti-CSRF
johnwilander
CSRF, ClickJacking & Open Redirect
CSRF, ClickJacking & Open Redirect
Blueinfy Solutions
Dom XSS - Encounters of the 3rd Kind (Bishan Singh Kochher)
Dom XSS - Encounters of the 3rd Kind (Bishan Singh Kochher)
ClubHack
Dom based xss
Dom based xss
Lê Giáp
Same Origin Policy Weaknesses
Same Origin Policy Weaknesses
kuza55
Going Beyond Cross Domain Boundaries (jQuery Bulgaria)
Going Beyond Cross Domain Boundaries (jQuery Bulgaria)
Ivo Andreev
Recomendados
Html5 localstorage attack vectors
Html5 localstorage attack vectors
Shreeraj Shah
NullCon 2012 - Ra.2: blackbox DOM-based XSS scanner
NullCon 2012 - Ra.2: blackbox DOM-based XSS scanner
Nishant Das Patnaik
Advanced CSRF and Stateless Anti-CSRF
Advanced CSRF and Stateless Anti-CSRF
johnwilander
CSRF, ClickJacking & Open Redirect
CSRF, ClickJacking & Open Redirect
Blueinfy Solutions
Dom XSS - Encounters of the 3rd Kind (Bishan Singh Kochher)
Dom XSS - Encounters of the 3rd Kind (Bishan Singh Kochher)
ClubHack
Dom based xss
Dom based xss
Lê Giáp
Same Origin Policy Weaknesses
Same Origin Policy Weaknesses
kuza55
Going Beyond Cross Domain Boundaries (jQuery Bulgaria)
Going Beyond Cross Domain Boundaries (jQuery Bulgaria)
Ivo Andreev
Same Origin Policy Weaknesses
Same Origin Policy Weaknesses
kuza55
Web Application Security in front end
Web Application Security in front end
Erlend Oftedal
HTML5 hacking
HTML5 hacking
Blueinfy Solutions
Something wicked this way comes - CONFidence
Something wicked this way comes - CONFidence
Krzysztof Kotowicz
Blackhat11 shreeraj reverse_engineering_browser
Blackhat11 shreeraj reverse_engineering_browser
Shreeraj Shah
XSS Primer - Noob to Pro in 1 hour
XSS Primer - Noob to Pro in 1 hour
snoopythesecuritydog
Front end-security
Front end-security
Miao Siyu
Secure java script-for-developers
Secure java script-for-developers
n|u - The Open Security Community
Html5: Something wicked this way comes (Hack in Paris)
Html5: Something wicked this way comes (Hack in Paris)
Krzysztof Kotowicz
CNIT 129S: 13: Attacking Users: Other Techniques (Part 1 of 2)
CNIT 129S: 13: Attacking Users: Other Techniques (Part 1 of 2)
Sam Bowne
XXE Exposed: SQLi, XSS, XXE and XEE against Web Services
XXE Exposed: SQLi, XSS, XXE and XEE against Web Services
Abraham Aranguren
Browser Internals-Same Origin Policy
Browser Internals-Same Origin Policy
Krishna T
CNIT 129S: 12: Attacking Users: Cross-Site Scripting (Part 1 of 2)
CNIT 129S: 12: Attacking Users: Cross-Site Scripting (Part 1 of 2)
Sam Bowne
DEfcon15 XXE XXS
DEfcon15 XXE XXS
pentest pentest
Client sidesec 2013 - script injection
Client sidesec 2013 - script injection
Tal Be'ery
Client sidesec 2013 - non js
Client sidesec 2013 - non js
Tal Be'ery
CNIT 129S: Ch 5: Bypassing Client-Side Controls
CNIT 129S: Ch 5: Bypassing Client-Side Controls
Sam Bowne
MITM Attacks on HTTPS: Another Perspective
MITM Attacks on HTTPS: Another Perspective
GreenD0g
Elegant Rest Design Webinar
Elegant Rest Design Webinar
Stormpath
Security vulnerabilities - 2018
Security vulnerabilities - 2018
Marius Vorster
Post XSS
Post XSS
instaqube
Browser Hacking For Fun and Profit | Null Bangalore Meetup 2019 | Divyanshu S...
Browser Hacking For Fun and Profit | Null Bangalore Meetup 2019 | Divyanshu S...
Divyanshu
Mais conteúdo relacionado
Mais procurados
Same Origin Policy Weaknesses
Same Origin Policy Weaknesses
kuza55
Web Application Security in front end
Web Application Security in front end
Erlend Oftedal
HTML5 hacking
HTML5 hacking
Blueinfy Solutions
Something wicked this way comes - CONFidence
Something wicked this way comes - CONFidence
Krzysztof Kotowicz
Blackhat11 shreeraj reverse_engineering_browser
Blackhat11 shreeraj reverse_engineering_browser
Shreeraj Shah
XSS Primer - Noob to Pro in 1 hour
XSS Primer - Noob to Pro in 1 hour
snoopythesecuritydog
Front end-security
Front end-security
Miao Siyu
Secure java script-for-developers
Secure java script-for-developers
n|u - The Open Security Community
Html5: Something wicked this way comes (Hack in Paris)
Html5: Something wicked this way comes (Hack in Paris)
Krzysztof Kotowicz
CNIT 129S: 13: Attacking Users: Other Techniques (Part 1 of 2)
CNIT 129S: 13: Attacking Users: Other Techniques (Part 1 of 2)
Sam Bowne
XXE Exposed: SQLi, XSS, XXE and XEE against Web Services
XXE Exposed: SQLi, XSS, XXE and XEE against Web Services
Abraham Aranguren
Browser Internals-Same Origin Policy
Browser Internals-Same Origin Policy
Krishna T
CNIT 129S: 12: Attacking Users: Cross-Site Scripting (Part 1 of 2)
CNIT 129S: 12: Attacking Users: Cross-Site Scripting (Part 1 of 2)
Sam Bowne
DEfcon15 XXE XXS
DEfcon15 XXE XXS
pentest pentest
Client sidesec 2013 - script injection
Client sidesec 2013 - script injection
Tal Be'ery
Client sidesec 2013 - non js
Client sidesec 2013 - non js
Tal Be'ery
CNIT 129S: Ch 5: Bypassing Client-Side Controls
CNIT 129S: Ch 5: Bypassing Client-Side Controls
Sam Bowne
MITM Attacks on HTTPS: Another Perspective
MITM Attacks on HTTPS: Another Perspective
GreenD0g
Elegant Rest Design Webinar
Elegant Rest Design Webinar
Stormpath
Security vulnerabilities - 2018
Security vulnerabilities - 2018
Marius Vorster
Mais procurados
(20)
Same Origin Policy Weaknesses
Same Origin Policy Weaknesses
Web Application Security in front end
Web Application Security in front end
HTML5 hacking
HTML5 hacking
Something wicked this way comes - CONFidence
Something wicked this way comes - CONFidence
Blackhat11 shreeraj reverse_engineering_browser
Blackhat11 shreeraj reverse_engineering_browser
XSS Primer - Noob to Pro in 1 hour
XSS Primer - Noob to Pro in 1 hour
Front end-security
Front end-security
Secure java script-for-developers
Secure java script-for-developers
Html5: Something wicked this way comes (Hack in Paris)
Html5: Something wicked this way comes (Hack in Paris)
CNIT 129S: 13: Attacking Users: Other Techniques (Part 1 of 2)
CNIT 129S: 13: Attacking Users: Other Techniques (Part 1 of 2)
XXE Exposed: SQLi, XSS, XXE and XEE against Web Services
XXE Exposed: SQLi, XSS, XXE and XEE against Web Services
Browser Internals-Same Origin Policy
Browser Internals-Same Origin Policy
CNIT 129S: 12: Attacking Users: Cross-Site Scripting (Part 1 of 2)
CNIT 129S: 12: Attacking Users: Cross-Site Scripting (Part 1 of 2)
DEfcon15 XXE XXS
DEfcon15 XXE XXS
Client sidesec 2013 - script injection
Client sidesec 2013 - script injection
Client sidesec 2013 - non js
Client sidesec 2013 - non js
CNIT 129S: Ch 5: Bypassing Client-Side Controls
CNIT 129S: Ch 5: Bypassing Client-Side Controls
MITM Attacks on HTTPS: Another Perspective
MITM Attacks on HTTPS: Another Perspective
Elegant Rest Design Webinar
Elegant Rest Design Webinar
Security vulnerabilities - 2018
Security vulnerabilities - 2018
Semelhante a Postcards from the post xss world- content exfiltration null
Post XSS
Post XSS
instaqube
Browser Hacking For Fun and Profit | Null Bangalore Meetup 2019 | Divyanshu S...
Browser Hacking For Fun and Profit | Null Bangalore Meetup 2019 | Divyanshu S...
Divyanshu
Building Client-Side Attacks with HTML5 Features
Building Client-Side Attacks with HTML5 Features
Conviso Application Security
Krzysztof Kotowicz - Hacking HTML5
Krzysztof Kotowicz - Hacking HTML5
DefconRussia
Open source security
Open source security
lrigknat
Web Hacking Series Part 4
Web Hacking Series Part 4
Aditya Kamat
Chrome extensions threat analysis and countermeasures
Chrome extensions threat analysis and countermeasures
Roel Palmaers
CNIT 129S: Ch 12: Attacking Users: Cross-Site Scripting
CNIT 129S: Ch 12: Attacking Users: Cross-Site Scripting
Sam Bowne
Html5 security
Html5 security
Krishna T
Warning Ahead: SecurityStorms are Brewing in Your JavaScript
Warning Ahead: SecurityStorms are Brewing in Your JavaScript
Cyber Security Alliance
Cross Site Scripting - Mozilla Security Learning Center
Cross Site Scripting - Mozilla Security Learning Center
Michael Coates
Django (Web Applications that are Secure by Default )