Volutions - ID | News | Gadget | Tutorial | Freeware | Template | Etc.: SDRF Vulnerability in Web-Applications and Browsers

SDRF Vulnerability in Web-Applications and Browsers

This report describes a vulnerability type called SDRF. There are several examples that demonstrate the risk of the above-mentioned class of vulnerability. Causes of its existence and methods of protection from SDRF are also observed in the report.
SDRF – the Same Domain Request Forgery. Like the known CSRF (Cross-Site Request Forgery) vulnerability, SDRF falsifies HTTP requests of users, but in contrast to CSRF, it forges the requests, that are send by a user to the same domain, where the malicious code, that exploits the vulnerability, is located.


Download: PDF

Video Demo: Google Mail under Opera XSS attack PoC ( Opera v10.63 and 11 )

Enter your email address:

Related Post

Browser
Papers


  • Digg
  • del.icio.us
  • Facebook
  • Google
  • StumbleUpon
  • Technorati
  • TwitThis

No response to “SDRF Vulnerability in Web-Applications and Browsers”

Leave a reply

 
Support By Blogger