28c3: Rootkits in your Web application

Loading...

Sign in or sign up now!
Alert icon
Upgrade to the latest Flash Player for improved playback performance. Upgrade now or more info.
3,290
Loading...
Alert icon
Sign in or sign up now!
Alert icon

Uploaded by on Dec 28, 2011

Download high quality version: http://bit.ly/rY3osO
Description: http://events.ccc.de/congress/2011/Fahrplan/events/4811.en.html

Artur Janc: Rootkits in your Web application
Achieving a permanent stealthy compromise of user accounts with XSS and JS injection attacks.

XSS bugs are the most widely known and commonly occurring Web vulnerability, but their impact has often been limited to cookie theft and/or simple actions, such as setting malicious email filters, stealing some data, or self-propagation via an XSS worm. In this work, I discuss practical approaches for exploiting XSS and other client-side script injection attacks, and introduce novel techniques for maintaining and escalating access within the victim's browser. In particular, I introduce the concept of resident XSS where attacker-supplied code is running in the context of an affected user's main application window and describe its consequences. I also draw analogies between such persistent Web threats and the traditional rootkit model, including similarities in the areas of embedding malicious code, maintaining access, stealthy communication with a C&C server, and the difficulty of detecting and removing attacker-supplied code.

Link to this comment:

Share to:
see all

All Comments (2)

Sign In or Sign Up now to post a comment!
  • demo?

  • Nach meiner Meinung klappt das nicht. Da will ich erst einen POC sehen!

Loading...

Alert icon
0 / 00Unsaved Playlist Return to active list
    1. Your queue is empty. Add videos to your queue using this button:
      or sign in to load a different list.
    Loading...Loading...Saving...
    • Clear all videos from this list
    • Learn more