11

localghost: Escaping the Browser Sandbox Without 0-Days

 3 years ago
source link: https://parsiya.net/blog/2020-08-13-localghost-escaping-the-browser-sandbox-without-0-days/
Go to the source link to view the article. You can view the picture content, updated content and better typesetting reading experience. If the link is broken, please click the button below to view the snapshot at that time.
Escaping the Browser Sandbox Without 0-Days

Hackerman's Hacking Tutorials

The knowledge of anything, since all things have causes, is not acquired or complete unless it is known by its causes. - Avicenna

Aug 13, 2020 - 1 minute read - Comments - DEF CON

localghost: Escaping the Browser Sandbox Without 0-Days

I had the hono(u)r of presenting in the DEF CON 28 Appsec village. Unfortunately, my super-duper awesome bug is not disclosed yet so I did not talk about it.

Link: https://youtu.be/Cgl51ZcACLg?t=90

Posted by Parsia Aug 13, 2020

No, You Are Not Getting a CVE for That The Same-Origin Policy Gone Wild

Copyright © 2020 Parsia - License - Powered by Hugo and Hugo-Octopress theme.


About Joyk


Aggregate valuable and interesting links.
Joyk means Joy of geeK