Web Cache Deception Attack

Поділитися
Вставка
  • Опубліковано 21 лис 2024

КОМЕНТАРІ • 20

  • @ysantamorena5150
    @ysantamorena5150 6 років тому +19

    Nice talk
    The moral is the same as Spectre: too much push on performance without caring about security

  • @SuperMarkusparkus
    @SuperMarkusparkus 6 років тому +3

    Sometimes adding a semicolon with some junk thereafter will not change the way the web server interprets the URL. This is common in Tomcat. webserver/path/to/page and webserver/path;junk/to;.junk/page;.css will be treated the same. I guess this could be used as a way to change the extension of the URL and hence make some things cachable.

  • @MherZaqaryann
    @MherZaqaryann 11 місяців тому

    Very clear explanation, respect to this guy!

  • @derek5863
    @derek5863 6 років тому +1

    Some penetration tools used to perform automated assessments of vulnerable sites must be adding a lot of data to these caches. Particularly authenticated fuzzing or file/directory brute-force. Let's hope tool developers don't use known file names and locations, and customers always sanitise their test DB's. 8-(

  • @thesenuts4472
    @thesenuts4472 5 років тому

    Applaud this man.

  • @HackingwiththeMiddle
    @HackingwiththeMiddle 6 років тому +2

    awesome!

  • @director1111
    @director1111 6 років тому +3

    Why are you guys putting it online 6 month later?

  • @MrM4X0N3
    @MrM4X0N3 6 років тому

    Good talk!

  • @BR-lx7py
    @BR-lx7py 6 років тому +1

    IMO you are not mentioning the only real solution: serve your cacheable and personalized/non-cacheable content on different domains. Use a very simple CDN configuration for the latter that does not cache anything, or no CDN at all if your origin can handle that. Otherwise you are only one mistake away from some major egg on your face. It is way too easy to make a configuration error in the CDN, or have the origin send the wrong headers by mistake.

  • @mleczkoxdTakTenmleczko
    @mleczkoxdTakTenmleczko 3 роки тому +1

    Using name Java wasn't good idea cause it's a litte bit confuse

  • @hackersguild8445
    @hackersguild8445 6 років тому

    Awesome talk.:)

  • @RamonaBonam-k8o
    @RamonaBonam-k8o 2 місяці тому

    Lang Isle

  • @jasonlind3065
    @jasonlind3065 5 років тому +2

    Haha I did this to cheat on my ochem online homework when I forgot to do it and it was about to be due. Still got a B tho

  • @TheDarkHorseUprising
    @TheDarkHorseUprising 6 років тому

    love this talk so badass

    • @PitchBlackHat
      @PitchBlackHat 6 років тому

      not as badass as your avatar! ;)...

  • @shubham_srt
    @shubham_srt 9 місяців тому

    ayoooo

  • @amandamate9117
    @amandamate9117 6 років тому +1

    Ernst and fucken Young

  •  6 років тому +1

    Wait, this is a new thing?