YoVDO

Got Your Nose - How to Steal Your Precious Data Without Using Scripts

Offered By: Hack in Paris via YouTube

Tags

Hack in Paris Courses Cybersecurity Courses Data Protection Courses

Course Description

Overview

Explore advanced web security threats in this 49-minute Hack in Paris conference talk. Delve into sophisticated attacks that bypass traditional cross-site scripting (XSS) protections and JavaScript-based security measures. Discover how attackers can exploit markup tricks to steal sensitive data, including plain-text passwords and CSRF tokens, without executing any JavaScript. Learn about self-spying emails and other malicious techniques that operate beyond the scope of conventional anti-XSS solutions. Gain insights into why disabling scripts and eliminating XSS may no longer provide adequate protection against these emerging threats.

Syllabus

Mario Heiderich Got Your Nose How to Steal Your Precious Data Without Using Scripts


Taught by

Hack in Paris

Related Courses

NetflOSINT- Taking an Often-Overlooked Data Source and Operationalizing It - Joe Gray - Hack in Paris
Hack in Paris via YouTube
All Roads Lead to OpenVPN Pwning Industrial Remote Access Clients - Sharon Brizinov - Hack in Paris - 2021
Hack in Paris via YouTube
Exploits in Wetware - R. Sell - Hack in Paris - 2019
Hack in Paris via YouTube
All Your GPS Trackers Belong to Us - C. Kasmi, P. Barre - Hack in Paris - 2019
Hack in Paris via YouTube
In NTDLL I Trust - Process Reimaging and Endpoint Security Solution Bypass - E. Carroll - Hack in Paris - 2019
Hack in Paris via YouTube