YoVDO

Web Cache Deception Attack

Offered By: Black Hat via YouTube

Tags

Black Hat Courses Cybersecurity Courses Web Security Courses

Course Description

Overview

Explore the Web Cache Deception attack, a novel web attack vector threatening various technologies and frameworks, in this 23-minute Black Hat conference talk by Omer Gil. Learn how attackers can manipulate web servers and caching mechanisms to expose sensitive information of authenticated users and potentially gain control over their accounts. Delve into caching basics, server reactions, attack conditions, and mitigation strategies. Gain valuable insights into this critical security vulnerability and understand its implications for web application security.

Syllabus

Intro
About caching
Servers' reactions
Getting down to business
Conditions
Why the HELL #2
Mitigation


Taught by

Black Hat

Related Courses

Attack on Titan M, Reloaded - Vulnerability Research on a Modern Security Chip
Black Hat via YouTube
Attacks From a New Front Door in 4G & 5G Mobile Networks
Black Hat via YouTube
AAD Joined Machines - The New Lateral Movement
Black Hat via YouTube
Better Privacy Through Offense - How to Build a Privacy Red Team
Black Hat via YouTube
Whip the Whisperer - Simulating Side Channel Leakage
Black Hat via YouTube