skip to main
|
skip to sidebar
MasterPass and PayPal
4 Mar 2012
Newer Post
Older Post
Home
Popular Posts
OAuth1, OAuth2, OAuth...?
TL;DR OAuth2 sucks. Please don't think about OAuth2 as about the next generation of OAuth1. They are completely different like colors: ...
How we hacked Facebook with OAuth2 and Chrome bugs
TL;DR We (me and @isciurus ) chained several different bugs in Facebook, OAuth2 and Google Chrome to craft an interesting exploit. Mallory...
J.Crew Factory: Get 50% off the entire store
" Thanks! " to many of you, who shared the following promotion for J.Crew Factory. J.Crew is offering Factory Store shoppers a...
Path Encoding Vulnerability in https/www redirects.
Playing with 302-based header injection (majority of web servers is not vulnerable to it btw) i found one tricky neat bug which can be reall...
Two "WontFix" vulnerabilities in Facebook Connect
TL;DR Every website with "Connect Facebook account and log in with it" is vulnerable to account hijacking. Every website relying o...
Octocat Tattoo
of course it's not a real one
Rails 'params' #2
I discovered [1, nil] attack, but while i was checking unsafe query generation and DoS with symbols people on twitter found RCE for YAML thr...
Token Fixation in Paypal
Remember OAuth1 session fixation? No? Read writeup from Eran Hammer (the guy who hates OAuth2 as much as I do). Guess what - there's ex...
Header injection in Sinatra/Rack
Try to run this simple app: require 'sinatra' get '/' do redirect params[:to] if params[:to].start_with? 'http://host....
Turbo API: How to use CORS without Preflights
From official doc on Cross Origin Resource Sharing A header is said to be a simple header if the header field name is an ASCII case-ins...