YoVDO

Hacking Modern Desktop Apps with XSS and RCE

Offered By: nullcon via YouTube

Tags

nullcon Courses Cross-Site Scripting (XSS) Courses Remote Code Execution (RCE) Courses

Course Description

Overview

Explore essential techniques for auditing Electron applications and discover the implications of XSS in desktop environments through this informative webinar. Learn how to transform XSS vulnerabilities into Remote Code Execution (RCE) in modern applications, attack preload scripts, and exploit Inter-Process Communication (IPC) for RCE. Gain practical, immediately applicable knowledge on desktop app security auditing across Linux, Windows, and Mac OS X platforms, with a focus on Electron but applicable to other desktop frameworks. Dive into real-world case studies of vulnerable applications and enhance your security auditing skills with actionable insights on Content Security Policy (CSP) bypasses and web security techniques.

Syllabus

Hacking Modern Desktop apps with XSS and RCE | Abraham Aranguren | NULLCON Webinar


Taught by

nullcon

Related Courses

Unearthing Malicious and Risky OpenSource Packages Using Packj
nullcon via YouTube
Pushing Security Left by Mutating Byte Code
nullcon via YouTube
The Faces of MacOS Malware - Detecting Anomalies in a Poisoned Apple
nullcon via YouTube
Contextomy - Let's Debug Together
nullcon via YouTube
Mind The Gap - The Linux Ecosystem Kernel Patch Gap
nullcon via YouTube