Uploaded by ChRiStIaAn008 on Sep 20, 2010
Speaker: Shreeraj Shah
Web 2.0 applications are using dynamic DOM manipulations extensively for presenting JSON or XML streams in the browser. These DOM calls mixed with XMLHttpRequest (XHR) object are part of client side logic written in JavaScript or part of any other client side technology be it Flash or Silverlight. DOM driven XSS is a sleeping giant in the application code and it can be exploited by an attacker to gain access to the end user's browser/desktop. This can become a root cause of following set of interesting vulnerabilities -- Cross Widget Sniffing, RSS feed reader exploitation, XHR response stealing, Mashup hacking, Malicious code injection, Spreading Worm etc. This set of vulnerability needs innovative way of scanning the application and corresponding methodology needs to be tweaked. We have seen DOM driven XSS exploited in various different popular portals to spread worm or virus. This is a significant threat on the rise and should be mitigated by validating un-trusted content poisoning Ajax or Flash routines. DOM driven XSS, Cross Domain Bypass and CSRF can cause a deadly cocktail to exploit Web 2.0 applications across Internet. This presentation will be covering following important issues and concepts. * Web 2.0 Architecture and DOM manipulation points * JavaScript exploits by leveraging DOM * Cross Domain Bypass and Hacks * DOM hacking for controlling Widgets and Mashups * Exploiting Ajax routines to gain feed readers * Scanning and detecting DOM driven XSS in Web 2.0 * Tools for scanning the DOM calls * Mitigation strategies for better security posture
For more information click here (http://bit.ly/dwlBpJ)
-
1 likes, 0 dislikes
14:58
Black Hat USA 2010: Hacking Browser's DOM: Exploiting Ajax and RIA 1/6by ChRiStIaAn0081,570 views
14:57
Black Hat USA 2010: Hacking Browser's DOM: Exploiting Ajax and RIA 3/6by ChRiStIaAn008531 views
14:58
Black Hat USA 2010: How to Hack Millions of Routers 1/4by ChRiStIaAn0085,462 views
14:58
Black Hat USA 2010: HTTPS Can Byte Me 1/4by ChRiStIaAn008522 views
14:57
Black Hat USA 2010: Hacking Browser's DOM: Exploiting Ajax and RIA 5/6by ChRiStIaAn008256 views
5:55
XSS Cross Site Scripting Demonstrationby ImpervaChannel36,225 views
3:34
Black Hat 2008: How Hackers Get Rich (& other sordid tales)by TechWebTV29,356 views
10:00
Black Hat USA 2010: Jackpotting Automated Teller Machines Redux 1/5by ChRiStIaAn0084,532 views
0:56
Silverlight from and iPhoneby HackingSilverlight1,119 views
3:26
Black Hat USA 2011: Application Security: For Hackers & Developersby tail0t1,421 views
1:37
A5 Cross Site Request Forgery CSRFby adams77593 views
48:02
BlackHat USA 2011: SSL And The Future Of Authenticityby ChRiStIaAn00840,859 views
14:58
Black Hat USA 2010: Hacking Browser's DOM: Exploiting Ajax and RIA 4/6by ChRiStIaAn008290 views
14:58
Black Hat USA 2010: Becoming the Six Million Dollar Man 4/6by ChRiStIaAn008376 views
12:00
Black Hat USA 2010: How I Met Your Girlfriend 4/4by ChRiStIaAn0084,291 views
14:58
Black Hat USA 2010: Exploiting the Forest with Trees 1/5by ChRiStIaAn008686 views
9:58
Cookie Stealing by Cross Site Scripting Tutorial - Irene Salomo.wmvby ireneChopin22,126 views
14:58
Black Hat USA 2010: Burning Asgard: What Happens When Loki Breaks Free 1/5by ChRiStIaAn008556 views
14:57
Black Hat USA 2010: HTTPS Can Byte Me 3/4by ChRiStIaAn008169 views
14:58
Black Hat USA 2010: Bad Memories 1/4by ChRiStIaAn008449 views
- Loading more suggestions...
Link to this comment:
All Comments (0)