惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

腾讯CDC
博客园 - Franky
MyScale Blog
MyScale Blog
L
LangChain Blog
Martin Fowler
Martin Fowler
Recent Announcements
Recent Announcements
Stack Overflow Blog
Stack Overflow Blog
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
博客园 - 司徒正美
量子位
A
About on SuperTechFans
C
Check Point Blog
大猫的无限游戏
大猫的无限游戏
Last Week in AI
Last Week in AI
小众软件
小众软件
Apple Machine Learning Research
Apple Machine Learning Research
I
InfoQ
V
Visual Studio Blog
Vercel News
Vercel News
B
Blog
爱范儿
爱范儿
aimingoo的专栏
aimingoo的专栏
U
Unit 42

Attack and Defense Labs

Cracking hashes in the JavaScript cloud with Ravan Performing DDoS attacks with HTML5 Cross Origin Requests & WebWorkers Port Scanning with HTML5 and JS-Recon RSnake, Web Security and a few beers HTML5 goodness at BlackHat Abu Dhabi this week Re-visiting JAVA De-serialization: It can't get any simpler than this !! XSSing client-side dynamic HTML includes by hiding HTML inside images and more Stealing entire Auto-Complete data in Google Chrome Shell of the Future – Reverse Web Shell Handler for XSS Exploitation Chrome and Safari users open to stealth HTML5 AppCache attack HTML5 Security Articles and Live Demos Stroke triggered XSS and StrokeJacking New technique to be released for Attacking JAVA Serialized Communication at Black Hat Europe 2010 Bypassing CSRF protections with ClickJacking and HTTP Parameter Pollution Imposter and Whitepapers released The Goan NullCon Hangover The ClubHack 2009 hangover Stealing Databases and Setting Backdoors on Google Gears Breaking the Browser Sandbox and stealing some files Browser Phishing Explained The SecurityByte and OWASP AppSec Asia 2009 hangover Lust 2.0 talk @ SecurityByte and OWASP AppSec Asia 2009
Attacking JAVA Serialized Communication: BH EU 2010
Manish S. · 2010-04-18 · via Attack and Defense Labs
JAVA Object Serialization has been in use in many applications for a long time now. I find many enterprise ap…