Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
albinowax_
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
10 ms
·
61.
▲
by
albinowax_
8y ago
I know this is a teensy bit on the late side - this is our first year after taking it over from WhiteHat. Anyway hopefully it's a valuable introduction to some new threats that everyone doing stuff related to websites should be aware o
62.
▲
An overview of the top web hacking techniques of 2017
(portswigger.net)
144 points
by
albinowax_
8y ago
|
11 comments
63.
▲
by
albinowax_
8y ago
Yes, this is called Web Cache Deception and is referenced in the article above: Please note that web caches also enable a different type of attack called Web Cache Deception which should not be confused with cache poisoning.
64.
▲
by
albinowax_
8y ago
I have no idea what caused it. This happened during my backup process so I lost about a month worth of personal emails. Definitely a nuisance but i don't think I lost anything critical. It looks like the offline backup process needs to
65.
▲
by
albinowax_
8y ago
I do this with Thunderbird, but copy the emails to a local folder to keep my online inbox clear. I've done it for years and just yesterday it decided to delete my local inbox. Good times.
66.
▲
Vulnerability in Hangouts Chat a.k.a. how Electron makes open redirects great
(blog.bentkowski.info)
2 points
by
albinowax_
8y ago
|
0 comments
67.
▲
Exploiting Open-XChange with Blind XXE via Powerpoint Files
(hackerone.com)
1 points
by
albinowax_
8y ago
|
0 comments
68.
▲
Detecting Same-Origin Redirections with a Bug in Firefox's CSP Implementation
(diary.shift-js.info)
1 points
by
albinowax_
8y ago
|
0 comments
69.
▲
Cloudflare, Fastly, Mozilla and Apple Working on SNI Encryption for TLS 1.3
(tools.ietf.org)
3 points
by
albinowax_
8y ago
|
0 comments
70.
▲
Evading CSP with DOM-based dangling markup
(portswigger.net)
1 points
by
albinowax_
8y ago
|
0 comments
71.
▲
XSS protection disappears from Microsoft Edge
(portswigger.net)
1 points
by
albinowax_
8y ago
|
0 comments
72.
▲
Server-Side Spreadsheet Injection – Formula Injection to Remote Code Execution
(bishopfox.com)
2 points
by
albinowax_
8y ago
|
0 comments
73.
▲
What website are you really on? Edge zero-day leaves users with no clue
(portswigger.net)
2 points
by
albinowax_
8y ago
|
0 comments
74.
▲
by
albinowax_
9y ago
This is insane. I guess Trustico emailed the private keys because Digicert was acting reluctant to revoke them? Pretty bold move. Hopefully the fact that revocation is largely broken doesn't make this worse...
75.
▲
by
albinowax_
9y ago
Looks cool, I've made one here https://www.buymeacoffee.com/albinowax - I'll add the button to http://hackxor.net/ shortly. PS looking forward to cryptocurrency support!
76.
▲
CSS-in-JS security issues
(reactarmory.com)
2 points
by
albinowax_
9y ago
|
0 comments
77.
▲
by
albinowax_
9y ago
I'm a security person, and I've found vulnerabilities in both fastmail and various core google services (although not gmail). Fastmail and gmail both have mature bug bounty programs, which mean they will pay out cash to anyone who
78.
▲
JSON hijacking for the modern web
(blog.portswigger.net)
3 points
by
albinowax_
10y ago
|
0 comments
79.
▲
Exploiting CORS Misconfigurations for Bitcoins and Bounties
(blog.portswigger.net)
1 points
by
albinowax_
10y ago
|
0 comments
80.
▲
Angular 1.6 – Expression Sandbox Removal
(angularjs.blogspot.com)
3 points
by
albinowax_
10y ago
|
0 comments
81.
▲
Reviewing bug bounties – a hacker's perspective
(skeletonscribe.net)
6 points
by
albinowax_
10y ago
|
0 comments
82.
▲
by
albinowax_
10y ago
Pretty much - the first paragraph links to an example of this technique being used to exploit Uber's developer documentation - http://blog.portswigger.net/2016/04/adapting-angularjs-paylo...
83.
▲
by
albinowax_
10y ago
This page is one of the ones that persuaded me to write that blog post - I've read it and don't think it's accurate. In spite of the OWASP brand name it's just a wiki - I could edit it myself. If my own post is persuasiv
84.
▲
by
albinowax_
10y ago
This approach is more suited to single-page apps, where the first request only fetches a template and all the subsequent requests to the website are done via AJAX. In the post I'm not really arguing that nobody should ever use cookies
85.
▲
by
albinowax_
10y ago
In the scenario you mention, you're scuppered regardless of whether sessions are stored. The best way to mitigate this particular problem is to use subresource integrity: https://developer.mozilla.org/en-US/docs&#x
86.
▲
by
albinowax_
10y ago
Agreed, definitely don't put a session token in the URL. I'd recommend using a custom HTTP header to transmit it - this way you aren't forced to use POST for everything.
87.
▲
by
albinowax_
10y ago
Let me know if you think it's all wrong :)